https://piefed.social/u/rimu posted on Mar 6, 2026 02:28
By injecting a prompt into a GitHub issue title, which an AI triage bot read, an attacker was able to install OpenClaw onto 4000 developer’s computers. But it could have been used to install any npm package - the sky is the limit.