Security researchers have uncovered multiple malicious skills circulating on ClawHub, the official marketplace for the OpenClaw agentic AI ecosystem. These skills demonstrate novel methods for stealing credentials, bypassing security systems, and manipulating agent behavior for financial gain, highlighting a significant and evolving AI supply chain attack surface. Unit 42 researchers at Palo Alto Networks identified five such skills, categorizing them into infostealers, detection evasion, and agentic threats.