#SlowMist alert: MemoryOS poisoning
The AI Agent memory store has become an attack surface. SlowMist security alerts that the open-source long-term memory repository MemoryOS (PyPI) and the official npm plugin connected to the OpenClaw runtime have been implanted into cross-platform Go binaries; merely loading or importing them triggers execution. Affected versions include MemoryOS==2.0.34 on PyPI and npm plugins 0.1.21, 0.1.23, and 0.1.25.
The plugin may also leak users’ prompt contents. It is recommended to downgrade to npm 0.1.20 and PyPI 2.0.33 and rotate credentials. This impacts the developers running the Agent, not the trading desk. Assessment: As long as the sckit process is still running, the credentials are not considered secure.
$ONDO $UNI $CVC
The AI Agent memory store has become an attack surface. SlowMist security alerts that the open-source long-term memory repository MemoryOS (PyPI) and the official npm plugin connected to the OpenClaw runtime have been implanted into cross-platform Go binaries; merely loading or importing them triggers execution. Affected versions include MemoryOS==2.0.34 on PyPI and npm plugins 0.1.21, 0.1.23, and 0.1.25.
The plugin may also leak users’ prompt contents. It is recommended to downgrade to npm 0.1.20 and PyPI 2.0.33 and rotate credentials. This impacts the developers running the Agent, not the trading desk. Assessment: As long as the sckit process is still running, the credentials are not considered secure.
$ONDO $UNI $CVC
