Hacker News new | ask | show | jobs
by varunsharma07 126 days ago
cline@2.3.0 was published with a malicious post-install script that silently installs OpenClaw on any machine running npm install.