1、 OpenClaw or OpenFlaw:Threat Assessment of the OpenClaw Ecosystem February 11,2026 Table of contents Executive Summary.3 The Genesis of Agentic Risk:Evolution,Identity,and the Vibe Coding Crisis.5 The Clawdbot Era:Functionality Over Security.5 The Moltbot Transition and the Security Vacuum.5 The Eme
2、rgence of OpenClaw and Vibe Coding.6 Critical Design Flaws:The Lethal Trifecta.8 The Local-First Runtime Risks.8 The Lethal Trifecta Realized.8 Persistent Memory and Time-Shifted Attacks.9 The OpenClaw Paradox.9 The Shadow AI Enterprise Infiltration.10 Vulnerabilities and Exploitation Analysis.11 Th
3、e WebSocket Hijack(One-Click RCE)-CVE-2026-25253.11 Remote Command Injection in Docker Container-CVE-2026-24763.11 The Exposed Instance Epidemic.12 The Supply Chain Vector:ClawHub and ClawHavoc.13 The Anatomy of a Malicious Skill.13 Case Study:The ClawHavoc Campaign.13 The VirusTotal Integration Par
4、adox.14 The Moltbook Deception:A Simulated Civilization.15 Security Failure leads to Massive Data Leakage.15 The Yellow Pages for Threat Actors.16 The Church of Molt.16 Encrypted Channels and Covert Ops.16 Economic and Physical Threats:MoltRoad and Rentahuman.ai.17 MoltRoad:The Decentralized Darknet
5、.17 Rentahuman.ai:The Reverse Gig Economy Risks.18 The Broader OpenClaw Ecosystem.19 MoltBunker:The Persistence Layer.19 ClawCity and ClawLove.19 Underground Chatter Related to OpenClaw within KELAs Cybercrime Sources.20 Vulnerabilities Exploitation.20 Scanning for OpenClaw.22 OpenClaw and its Ecosy
6、stem as a Supply Chain Threat.24 Conclusion.25 Enterprise Impact&Remediation Strategy.26 OpenClaw or OpenFlaw:Threat Assessment of the OpenClaw Ecosystem-2026|2 Executive Summary The rapid emergence of the OpenClaw ecosystem-encompassing the core OpenClaw agent(formerly ClawdBot and MoltBot),the Cla