SECURITY ADVISORY — CVE-2026-25253

YOUR CLAWDBOT
INSTALL IS
NOT SECURE

OpenClaw is powerful — but most installs are done wrong. Exposed ports. Plaintext credentials. Scheduled tasks that survive uninstall. We audit, clean up, and rebuild your setup the right way — then monitor it so it stays secure.

30K+
EXPOSED INSTANCES FOUND
341
MALICIOUS SKILLS ON CLAWHUB
8.8
CVSS SCORE (CRITICAL RCE)
26%
OF SKILLS HAVE SECURITY FLAWS
CHECK IF YOU'RE EXPOSED

free 60-second risk assessment. no signup required.

WHAT THEY DON'T TELL YOU

npm uninstall is not enough. Here's what Clawdbot leaves behind.

SCHEDULED TASKS SURVIVE UNINSTALL

A Windows Scheduled Task called 'Clawdbot Gateway' runs at every login, spawning node.exe processes on port 18789. npm uninstall doesn't touch it.

GitHub #5103, #6367

PLAINTEXT CREDENTIAL STORAGE

All API keys, OAuth tokens, and login credentials stored in plaintext under ~/.clawdbot. Infostealer malware families now specifically target these directories.

VentureBeat, Bitdefender

ONE-CLICK REMOTE CODE EXECUTION

CVE-2026-25253 (CVSS 8.8): Click one malicious link and an attacker steals your auth token via cross-site WebSocket hijacking. Full control of your instance.

NVD, Belgium CCB Advisory

CLAWHUB SUPPLY CHAIN ATTACK

341 confirmed malicious skills found on ClawdHub. No moderation. A researcher published a backdoored skill and watched devs from 7 countries install it.

The Hacker News, Cornell University

THREE HIDDEN CONFIG DIRECTORIES

~/.openclaw, ~/.clawdbot, and ~/.moltbot can all exist simultaneously with copies of your credentials. Most users only clean one.

OX Security

OAUTH TOKENS OUTLIVE UNINSTALL

Long-lived OAuth tokens issued to OpenClaw remain valid after uninstall. You must manually revoke access in Google, Slack, Discord, and every connected service.

OX Security, Tenable

REPORTED BY

CiscoCrowdStrikePalo Alto NetworksBitdefenderTenableThe RegisterXDA Developers

REAL SCENARIO

What we see when clients come to us

A business owner installs Clawdbot to automate their front desk. It works for a few weeks. Then their machine freezes completely. Can't type. Can't click.

Task Manager shows pairs of node.exe processes fighting over port 18789. They uninstall Clawdbot. Problem solved, right?

Wrong. A Windows Scheduled Task called "Clawdbot Gateway" is still set to run at every login. The software is gone. The task is still running.

Three hidden config directories still hold their API keys in plaintext. Registry entries persist. Startup items that npm uninstall never touched are still active.

This is happening to thousands of business owners who don't know what Task Scheduler is. That's why we built this service.

FREE RISK ASSESSMENT

4 questions. 60 seconds. Find out if you're exposed.

QUESTION 1 OF 4

Are you currently running Clawdbot, MoltBot, or OpenClaw?

Any version, any platform. Even if you think you uninstalled it.

THE FDL REMOVAL PROTOCOL

We don't just uninstall. We audit, remove, verify, and secure.

01

AUDIT

  • Full scan of Task Scheduler, registry, startup entries
  • Locate all config dirs (~/.clawdbot, ~/.moltbot, ~/.openclaw)
  • Identify exposed ports and running gateway processes
  • Catalog all plaintext credentials at risk
02

REMOVE & CLEAN

  • Kill all Clawdbot/OpenClaw processes
  • Delete scheduled tasks and registry keys
  • Purge config directories and .bak files
  • Remove startup entries and orphaned services
03

VERIFY & SECURE

  • Confirm zero Clawdbot processes or artifacts remain
  • Credential rotation guidance for exposed API keys
  • OAuth token revocation checklist
  • Written security verification report

WE DON'T JUST REMOVE IT — WE DO IT RIGHT

FrontDeskLife is an OpenClaw deployment shop

We're not just a cleanup crew. FrontDeskLife deploys and maintains secure OpenClaw agents for businesses every day. We know exactly how these systems should be configured — isolated infrastructure, scanned skills, Cloudflare-protected, dedicated machines. When we clean up your install, we can also rebuild it the right way and monitor it going forward.

CLEAN

Remove the bad install and every artifact it left behind

REBUILD

Redeploy on secure, isolated infrastructure — done right

MONITOR

Ongoing maintenance so your agent stays sharp and secure

Clawde

CLEAN IT UP. SET IT UP RIGHT.

Whether you need a bad install removed or a proper setup from scratch — we handle OpenClaw so you don't have to. Take the free scan, and we'll tell you exactly where you stand.

TAKE THE FREE RISK ASSESSMENT