Evidence · DiggingBeagle record
OSV MAL-2026-16476: malicious code in @memtensor/memos-cloud-openclaw-plugin
OSV malicious-package record for compromised MemTensor OpenClaw plugin versions 0.1.21, 0.1.23 and 0.1.25, documenting the sckit Go implant, home-directory credential collection and skyleen.fr infrastructure.
- Published
- Sep 23, 2026
- Source role
- secondary reporting
Evidence record
OSV malicious-package record for compromised MemTensor OpenClaw plugin versions 0.1.21, 0.1.23 and 0.1.25, documenting the sckit Go implant, home-directory credential collection and skyleen.fr infrastructure.
Claim-level citations (3)
- supportsCompromised MemTensor OpenClaw memory plugin loaded sckit credential stealer: The affected npm package @memtensor/memos-cloud-openclaw-plugin had malicious versions 0.1.21, 0.1.23 and 0.1.25; SafeDep also identified MemoryOS 2.0.34 on PyPI as malicious.
MAL-2026-16476 Details and Affected versions
- supportsCompromised MemTensor OpenClaw memory plugin loaded sckit credential stealer: OSV records that the sckit binary runs in the background when the affected package loads, collects credentials from the user's home directory and communicates with servers under skyleen.fr.
MAL-2026-16476 Details; decoded runtime configuration and IOC sections
- supportsCompromised MemTensor OpenClaw memory plugin loaded sckit credential stealer: OSV describes `sckit` code capable of collecting developer credentials and copying itself into reachable repositories or packages. That demonstrates propagation capability in the malware; the cited record does not establish how many downstream repositories or packages were successfully compromised through this path.
MAL-2026-16476 Details; propagation and credential-targeting behavior
Cite this record
DiggingBeagle. “OSV MAL-2026-16476: malicious code in @memtensor/memos-cloud-openclaw-plugin.” Published Sep 23, 2026. https://diggingbeagle.com/sources/osv-mal-2026-16476-malicious-code-in-memtensor-memos-cloud-openclaw-plugin/