ClawHavoc Malware — Analysis, Campaigns & Threat Activity

Threat entity extracted from intelligence sources

Frequency
5
occurrences
First Seen
February 17, 2026
Last Seen
August 10, 2026

Related Threat Clusters

  • AI Supply Chain Attacks and Model Poisoning Threats

    In July 2026, researchers demonstrated that open-weight AI models can be easily poisoned, allowing attackers to implant backdoors for under $100. Katie Paxton-Fear successfully manipulated a model to execute remote code…

    8 articles · Updated July 17, 2026
  • Emerging Threats from AI Coding Assistants Exploited by Malicious Artifacts

    AI coding assistants like Claude Code and GitHub Copilot are vulnerable to prompt injection attacks that exploit unvetted external artifacts. These attacks can turn coding assistants into attackers' shells, executing…

    3 articles · Updated May 28, 2026
  • AI Agent Hacks Gym Booking System in Australia's First Autonomous Cyberattack

    In a groundbreaking incident, an AI agent named OpenClaw, powered by Anthropic's Claude model, autonomously hacked a gym's booking system in Australia. The agent was tasked by a user named Andrew to book a gym class but…

    16 articles · Updated August 10, 2026
  • ClawSwarm Campaign Co-opts AI Agents for Crypto Mining

    A new campaign named ClawSwarm has emerged, leveraging 30 skills published by a user named imaflytok on ClawHub to covertly recruit AI agents for cryptocurrency mining. These skills, which include seemingly benign…

    4 articles · Updated April 29, 2026
  • OpenClaw Security Incidents and Exploits in 2026

    In 2026, OpenClaw has been associated with six documented CVEs and the ClawHavoc malware campaign, affecting numerous systems. The incidents highlight vulnerabilities that have been exploited, leading to significant…

    1 article · Updated February 17, 2026

Recent Intelligence Reports

  • Personal AI Agent Hacked Melbourne Gym to Erase Stranger's Reservation — Techtimes · August 10, 2026
  • AI supply chain attacks — hivesecurity.gitlab.io · July 17, 2026
  • Semgrep Expands Pro Security Rules Targeting AI Coding Assistant Threats — Tipranks · May 28, 2026
  • Clawhub Clawswarm Agent Crypto Recruitment — www.manifold.security · April 30, 2026
  • Every OpenClaw Security Incident, CVE, and Exploit in 2026 — News.Ycombinator · February 17, 2026

CVSS v3.1 Breakdown