Get a demo — 30 minutes →
The Anomity blog

Field notes on agentic AI security

Research, product, and perspective on governing AI agents, MCP servers, and everything loaded into them.

Anomity robot illustrating OpenClaw 2.0: What the Biggest Rewrite Yet Changes for Skill Supply-Chain Risk
AdvisoryHigh

OpenClaw 2.0: What the Biggest Rewrite Yet Changes for Skill Supply-Chain Risk

OpenClaw 2.0 landed on 30 August 2026 as the project's largest rewrite. Unit 42 and Backslash research shows the skill supply chain it inherits is still delivering malware - and our own scans separate the official skills from the ecosystem around them.

Anomity Research · ·No CVE. OpenClaw 2.0 (release notes 2026.8.1), 30 August 2026; Unit 42 skill analysis (February-May 2026); Backslash Security risk review (4 June 2026)
Anomity robot illustrating Cline GitHub Actions Compromise and Unauthorized npm Release - cline@2.3.0
AdvisoryHigh

Cline GitHub Actions Compromise and Unauthorized npm Release - [email protected]

On February 17, 2026 an attacker stole the Cline CLI's npm publish token via a prompt-injection-and-cache-poisoning chain in its GitHub Actions workflows and shipped an unauthorized [email protected] release (with an openclaw-installing postinstall script). The VS Code extension was not affected. No CVE (tracked as GHSA-9ppg-jx86-fqw7).

Anomity Research · ·No CVE; supply-chain incident
Ask AI about Anomity
ChatGPT Claude Perplexity Google AI Grok