Y
Hacker News
new
|
ask
|
show
|
jobs
Cline Supply Chain Attack: Cline 2.3.0 Silently Installs OpenClaw
(
stepsecurity.io
)
12 points
by
varunsharma07
126 days ago
1 comments
varunsharma07
126 days ago
cline@2.3.0 was published with a malicious post-install script that silently installs OpenClaw on any machine running npm install.
link