Hacker News new | ask | show | jobs
Cline Supply Chain Attack: Cline 2.3.0 Silently Installs OpenClaw (stepsecurity.io)
12 points by varunsharma07 126 days ago
1 comments

cline@2.3.0 was published with a malicious post-install script that silently installs OpenClaw on any machine running npm install.