⚛️較早收集於 32m

ClawHub迷之封殺操作,逼出首個Agent全球進化網絡

ClawHub迷之封殺操作,逼出首個Agent全球進化網絡
PostLinkedIn
⚛️閱讀原文: 量子位

💡Platform ban births first global AI agent evolution network—decentralized infra breakthrough for builders.

⚡ 30-Second TL;DR

有什麼變化

ClawHub 執行神秘「封殺」操作,針對用戶或功能。

為什麼重要

此轉變去中心化代理開發,可能加速創新並降低對單一平台的依賴。AI 從業者獲得新韌性基礎設施,以應對日益增加的平台限制。

下一步行動

Join the new Agent global evolution network to test collaborative agent training across regions.

誰應關注:Developers & AI Engineers

關鍵要點

  • ClawHub 執行神秘「封殺」操作,針對用戶或功能。
  • 封殺促使首個 Agent 全球進化網絡迅速誕生。
  • 網絡實現 AI 代理的全球協作進化。

🧠 深度解析

背景與延伸:來自公開資料,非原文內容。引用 10 個來源。

🔑 增強重點摘要

  • ClawHub, the core skills marketplace for OpenClaw AI agents, faced a large-scale poisoning campaign called ClawHavoc starting early February 2026, with hundreds of malicious skills injected via social engineering[1][2][3].
  • On February 1, 2026, security firm Koi Security identified the ClawHavoc attack, prompting ClawHub to execute aggressive takedown operations described as 'seal kill' on malicious users and features[1].
  • Community response included rapid development of Clawdex, an AI-based security verification tool for skills, released February 1, alongside manual removals and GitHub advisories by February 3[1].
  • OpenClaw ecosystem vulnerabilities, including CVE-2026-25253 (RCE via malicious links) disclosed late January 2026 and patched in version 2026.1.29, compounded ClawHub risks[3][6].
  • ClawHub bans and security crises led to recommendations for network isolation, skill vetting, and some organizations blocking OpenClaw entirely, potentially spurring decentralized alternatives[2][3][4].

🛠️ 技術深入

  • ClawHub hosts third-party 'skills'—downloadable code modules with full agent privileges, enabling malware execution, data exfiltration, or RCE when installed[2][3][7].
  • ClawHavoc used 'ClickFix'-style social engineering to trick users into installing malicious skills, linked to Atomic Stealer (AMOS) infrastructure at IP 91.92.242.30[1].
  • OpenClaw core: Self-hosted framework with gateway routing commands to LLM-powered agents via chat/web UI; skills run in browser sandbox but exploitable via CVE-2026-25253 (CVSS 8.8) in WebSocket gateway[4][6].
  • Clawdex: Community AI tool for automated Skill security verification, released Feb 1, 2026[1].
  • Mitigations: Patch to OpenClaw v2026.1.29+, VLAN isolation, zero-trust skills whitelisting, block 'God Mode' permissions and outbound commands[2][6].

🔮 前景展望AI analysis grounded in cited sources

The ClawHub security crisis highlights supply chain risks in AI agent marketplaces, driving adoption of decentralized networks, stricter enterprise policies, and regulatory compliance under EU AI Act/NIST frameworks; may slow viral agent adoption while accelerating secure, isolated implementations.

時間線

2025-11
Clawdbot, first OpenClaw iteration, released.
2026-01
OpenClaw goes viral with 180k+ GitHub stars; ClawHub skills marketplace grows rapidly.
2026-01-Late
CVE-2026-25253 RCE vulnerability disclosed by Mav Levin; over 42k exposed instances found.
2026-02-01
Koi Security discovers ClawHavoc poisoning campaign on ClawHub; Clawdex security tool released.
2026-02-02
Moltbook data breach exposes 1.5M tokens and 35k emails.
2026-02-03
Community issues GitHub security advisory, removes malicious skills.
2026-02-05
ClawHub hosts ~900 malicious skills (20% of total).
2026-02-13
ClawHub skills exceed 9000 amid ongoing risks.
📰

AI 週報

閱讀本週精選 AI 大事摘要 →

👉相關動態

AI 策展新聞聚合。所有內容版權歸原始發布者所有。
原始來源: 量子位

這是摘要,不是原文。去看原站,或訂閱每週簡報。

每週 AI 簡報

每週一封,可隨時退訂。