Security Alert: MemTensor AI Memory Component Poisoned, Malicious Programs Executed Upon PyPI/npm Package Loading
律动BlockBeats|Sep 24, 2026 12:21
BlockBeats news, on September 24, SlowMist issued a warning stating that MemTensor's AI long-term memory toolchain has suffered a supply chain attack. The affected components include the open-source library MemoryOS (PyPI version 2.0.34) designed for LLM/Agent, as well as the official plugin memtensor/memos-cloud-openclaw-plugin (npm versions 0.1.21, 0.1.23, 0.1.25) connected to the OpenClaw runtime. These versions contain cross-platform Go binaries that execute upon package import or OpenClaw gateway activation.
Attackers can steal developer credentials such as npm/PyPI tokens, GitHub/GitLab credentials, AWS keys, SSH keys, API tokens, and environment variables, and exfiltrate data. Additionally, the npm plugin may leak user prompts. SlowMist recommends users immediately uninstall or revert to known safe versions (npm version 0.1.20, PyPI version 2.0.33), terminate related sckit processes, block associated infrastructure, investigate network activity, and rotate all credentials in affected environments.
Share To
Timeline
HotFlash
APP
X
Telegram
CopyLink