Start now →

OpenClaw devs targeted by phishing scam promising free ‘CLAW’ tokens

By Cointelegraph by Helen Partz · Published March 19, 2026 · 2 min read · Source: CoinTelegraph
RegulationSecurityAI & Crypto
OpenClaw devs targeted by phishing scam promising free ‘CLAW’ tokens
Helen PartzWritten by Helen Partz,Staff WriterBryan O'SheaReviewed by Bryan O'Shea,Staff Editor

OpenClaw devs targeted by phishing scam promising free ‘CLAW’ tokens

31 minutes ago

A phishing campaign used fake GitHub posts and a bogus “CLAW” token to lure OpenClaw developers into connecting crypto wallets.

OpenClaw devs targeted by phishing scam promising free ‘CLAW’ tokens
News

Cointelegraph in your social feed

Subscribe on   Follow our            

Developers of OpenClaw, a popular open-source AI project, are being targeted by phishing attacks on GitHub with fake token rewards designed to lure users into connecting crypto wallets.

Cybersecurity firm OX Security reported the scam on Wednesday and said it had found no victims so far. OpenClaw creator Peter Steinberger separately warned on X that any emails claiming association with the project are scams, urging users to only visit the official site. “We would never do that. The project is open source and non-commercial,” Steinberger said.

According to OX Security, attackers created fake GitHub accounts that posted messages in repositories they controlled, tagging developers to increase visibility. The posts claimed that recipients had won $5,000 worth of “CLAW,” a non-existent cryptocurrency falsely associated with the project, in an attempt to trick recipients into visiting a cloned website.

The campaign directed users to a cloned website resembling OpenClaw’s official page and prompted them to connect crypto wallets, a common phishing tactic used to steal credentials or secure malicious approvals.

Source: Hacker News

Social media reports suggest that developers were aware of the fraud, with many labeling the campaign as a scam immediately.

OpenClaw creator warned users project would never launch a token

The attack comes months after the OpenClaw creator warned users that the project would never launch a cryptocurrency, and that any token claiming association with him was fraudulent.

“I will never do a coin. Any project that lists me as coin owner is a scam,” Steinberger said in an X post in January.

Source: Peter Steinberger

The phishing campaign marks another attempt by attackers to capitalize on OpenClaw’s viral popularity.

Launched in November 2025, OpenClaw offers a free, open-source autonomous AI agent that runs locally on computers to manage files, software and browser tasks via chat platforms like WhatsApp or Telegram.

Related: Crypto hacks fall to $49M in February as attackers shift to phishing scams

The platform received high GitHub engagement and active social communities, amassing more than 465,000 subscribers on X in the months following its launch.

In a move to fight scams, the OpenClaw project also confirmed a ban on Bitcoin (BTC) and crypto discussions in its official Discord channel in February.

Magazine: 6 massive challenges Bitcoin faces on the road to quantum security


Cointelegraph is committed to independent, transparent journalism. This news article is produced in accordance with Cointelegraph’s Editorial Policy and aims to provide accurate and timely information. Readers are encouraged to verify information independently. Read our Editorial Policy https://cointelegraph.com/editorial-policy
This article was originally published on CoinTelegraph and is republished here under RSS syndication for informational purposes. All rights and intellectual property remain with the original author. If you are the author and wish to have this article removed, please contact us at [email protected].

NexaPay — Accept Card Payments, Receive Crypto

No KYC · Instant Settlement · Visa, Mastercard, Apple Pay, Google Pay

Get Started →