2 hours ago

OpenClaw Developers Hit by GitHub Phishing Campaign Designed to Drain Crypto Wallets

TLDR: Attackers created fake GitHub accounts to tag OpenClaw developers with fraudulent $5,000 $CLAW token airdrop offers. A cloned openclaw.ai site used obfuscated JavaScript named “eleven.js” to silently drain connected crypto wallets. OX Security found a “nuke” function inside the malware that erases wallet-theft data to block forensic investigation. The threat actor’s wallet address was [...]

The post OpenClaw Developers Hit by GitHub Phishing Campaign Designed to Drain Crypto Wallets appeared first on Blockonomi.

Source: Blockonomi →