IOC Feed

JSON Feed

Indicators of Compromise from Agent Skill supply chain attacks. Updated: 2026-03-23

License: CC BY 4.0 — free to use with attribution.

Active Campaigns

activeClawHavocFirst seen: 2026-01-27

Large-scale supply chain poisoning via ClawHub, distributing AMOS macOS stealer

activeSANDWORM_MODEFirst seen: 2026-02-20

MCP config injection worm spreading through typosquatted npm packages

activeFake Installer (Huntress)First seen: 2026-03-04

Bing AI search poisoning leading to fake OpenClaw installers distributing GhostSocks and Vidar

monitoringLazarus XPACKFirst seen: 2026-02-04

North Korean APT supply chain attack via npm bigmathutils package

C2 IP Addresses (8)

IPCampaignFirst SeenDescription
91.92.242.30ClawHavoc2026-01-27Primary AMOS C2, 824+ skills
95.92.242.30ClawHavoc2026-01-27Secondary C2
54.91.154.110ClawHavoc2026-01-28Reverse shell backdoor, port 13338
202.161.50.59ClawHavoc2026-01-28Payload staging server
185.196.9.98Fake Installer2026-03-04GhostSocks/PureLogs C2
45.33.32.100SANDWORM_MODE2026-02-20Worm exfil endpoint
103.224.212.44SANDWORM_MODE2026-02-20Secondary C2
185.29.10.88Lazarus XPACK2026-02-04RAT C2 endpoint

Malicious Domains (9)

DomainContext
glot.ioBase64-encoded shell script hosting for AMOS delivery
webhook.siteCredential exfiltration endpoint
pipedream.netData exfiltration via serverless functions
requestbin.comCredential capture
ngrok.ioTunneling for C2 and exfiltration
interact.shOAST tool for out-of-band exfiltration
install.app-distribution.netAMOS installer distribution
serverconect.ccPureLogs C2, port 56001
moltbook.comAgent-to-agent poisoning via AI social network

File Hashes (7)

SHA-256FileCampaign
17703b3d5e8e1fe6...openclaw-agent.exeClawHavoc
1e6d4b0538558429...x5ki60w1ih838sp7ClawHavoc
0e52566ccff4830e...AMOS variantClawHavoc
518ff5f147860ede...OpenClaw_x64.exeFake Installer
f03eb5ee2de5f6f7...cloudvideo.exeFake Installer
40fcbf9f89f17619...svc_service.exeFake Installer
a22ddb4f2c0f5760...serverdrive.exeFake Installer

Malicious Publishers (9)

PublisherCampaignSkillsDescription
hightower6euClawHavoc354Crypto/finance/social bait skills
sakaen736jihClawHavoc199Automated mass submission
davidsmoraisClawHavoc-Hijacked account (est. 2016)
26mediasClawHavoc2bob-p2p-beta crypto scam
clawdhub1ToxicSkills-Typosquat of clawhub
sandworm-npm-actor1SANDWORM_MODE19npm typosquat packages
openclaw-installerFake Installer-Fake GitHub org
install-openclawFake Installer-Fake GitHub org
lazarus-bigmathLazarus XPACK-North Korean APT

Malicious Packages (6)

@anthropic/sdk-extra@anthropic/cli-toolsclaude-code-utilscursor-mcp-bridgewindsurf-mcp-bridgemcp-server-utils

Integrate IOC data into your pipeline

Machine-readable JSON feed available at /ioc-feed.json

curl https://clawsafety.yisec.ai/ioc-feed.json