External Publication
Visit Post

Cline CLI 2.3.0 Supply Chain Attack Installed OpenClaw on Developer Systems

The Hacker News | #1 Trusted Source for Cybersecurity News [Uno… February 20, 2026
Source
In yet another software supply chain attack, the open-source, artificial intelligence (AI)-powered coding assistant Cline CLI was updated to stealthily install OpenClaw, a self-hosted autonomous AI agent that has become exceedingly popular in the past few months. "On February 17, 2026, at 3:26 AM PT, an unauthorized party used a compromised npm publish token to publish an update to Cline CLI

Discussion in the ATmosphere

Loading comments...