It’s like someone set up a stall at the entrance to a gold vault, selling maps to traps instead of shovels.
The rain in Shanghai these past few days has been unsettling—sticky and humid, much like the sensation of matcha donut glaze lingering on one’s fingers.
(I licked the frosting off my finger and cracked the window open just a bit.)
It was precisely in the early hours of this damp morning that I saw a nauseating piece of news in a hidden tech group. OpenClaw—that AI Agent framework that has been explosively popular lately, forcing Peter Steinberger to change names—is in big trouble.
Not code-level trouble, but human-level trouble.
Someone discovered that a group of scammers posing as the OpenClaw core team is precisely sniping at open-source contributors who have submitted PRs (Pull Requests). Their pitch is as beautifully manicured as a bonsai tree: “Want your PR merged faster? Want to join the core contributor group? Or… want to use OpenClaw to run some ‘gray market’ operations and make big money?”
Then, comes a cold cryptocurrency wallet address and a lie named “The Fast Track.”
01 The Anxiety Harvester
To be honest, when I first saw this news, I almost spilled my coffee all over my keyboard.
These scammers understand today’s developers too well. They aren’t selling code; they are selling the desire to be “seen.”
Think about it. It’s 2026. Do you know how competitive the AI track has become? For a phenomenal open-source project like OpenClaw, which hit over 100k GitHub stars in days, sneaking in a PR is more valuable for a young developer looking to gild their resume than a six-month internship at a Big Tech company.
The scammers are exploiting exactly this anxiety.
I carefully looked through the exposed chat logs… (frowns). Their methods are incredibly dirty. They start by validating your code (even though they probably don’t understand a single line of it), and then imply: “The project maintainers are too busy; there’s a backlog of thousands of PRs. If you want to cut the line, we have an ‘internal channel.'”
Does that sound familiar? Doesn’t it sound like scalpers at Disney selling so-called “VIP access”?
Even more outrageous is the “AI Gray Market Money-Making Project.” They leverage OpenClaw’s powerful system permissions (after all, this thing can directly manipulate the file system and Shell) to induce contributors to run so-called “high-yield scripts.” In reality? We either become part of a botnet, start mining for them, or spread malware like Atomic Stealer.
02 A Wolf in Sheep’s Clothing… or a Wolf in a Bot’s Clothing
This brings us to the unique nature of OpenClaw itself.
The project was previously called ClawdBot, then changed to MoltBot due to trademark issues (you know, a certain large model company wasn’t too happy), and finally settled on OpenClaw. This twisted history of name changes created a massive information vacuum.
With the name changing back and forth, the only winners might be the phishing sites that slipped in through the cracks.
I suspect the scammers might love this chaotic period even more than the real maintainers.
They squat on social media handles with the old names, create mirror repositories on GitHub that look identical, and even forge administrator identities in Discord. This isn’t just simple online fraud; this is a “dimensional strike” against the tech community.
We used to say “Code is Law,” but the current situation is: as long as your avatar and ID look like Peter Steinberger, you can swindle a fame-hungry developer out of their wallet.
The greatest irony is that OpenClaw’s core selling point is Agent autonomy—letting AI do the work for you. But now, it’s a group of human scammers, wearing the skin of AI, cheating another group of humans. This logical loop is absurd no matter how you look at it.
03 Nothing New Under the Sun
Actually, if you stretch the timeline out a bit, you’ll realize this script is so cliché it makes you want to yawn.
Remember the crazy years of Web3? Airdrop scams, fake project Discord DMs… the drama today is almost exactly the same, just swapping “Whitelist” for “PR Merge” and “Token” for “Contributor Title.”
Looking at this crude verification interface, can you believe anyone would actually connect their wallet? The fact is, many people really do.
This is the weakness of human nature. Technology iterates, from Blockchain to Generative AI, and now to Autonomous Agents, but greed and the desire for quick success have never changed.
I talked to a few friends who do open-source maintenance about this. They smiled bitterly and said: “Turbulence (my nickname), do you know what the scariest part is? It’s that some of the victims subconsciously hope it’s real.”
Even if there’s only a 1% chance that the core team is running a “paid referral” scheme, some are willing to gamble. That is what makes us so-called “tech idealists” feel the most powerless.
04 The Collapse of Trust is Scarier Than Losing Money
Honestly, the loss of a few hundred or thousand USDT might just be a painful sting for many developers. But what I’m really worried about is… (pauses, staring blankly at the rain outside).
If this kind of thing becomes the norm, the most precious thing in the open-source community—trust based on non-monetary relationships—is going to shatter.
Imagine this: in the future, when you receive an email from a Maintainer inviting you to participate in core development, your first reaction won’t be excitement, but suspicion: “Is this guy trying to phish my private key?” Or when you see a great open-source tool, you won’t dare to easily run agent run because you don’t know if the control behind this Repo has been taken over by the black market.
Once this chain of suspicion is formed, the open-source spirit exists in name only.
We used to worry about closed-source software leaving backdoors. Now, great, the door to open-source software is wide open, but there’s a group of bandits standing at the entrance collecting tolls.
05 Final Thoughts
The rain seems to have let up a bit, but the sky is still gloomy.
regarding the OpenClaw project, I still think it’s cool; technology itself is innocent. But as someone who has been through the wringer in this circle, I have to give everyone a heads-up:
In this era of AI frenzy, anyone promising a “shortcut” is usually holding either a sickle or a body bag.
Don’t hand over your brain and your wallet just for a green GitHub commit square. Even if Peter Steinberger himself stood in front of you asking for money to speed up a PR, you should report him on the spot—though I know he would certainly never do that.
(Taking the last bite of the donut)
Alright, I’m going to clean up my inbox. I think I just saw another email titled “Urgent: OpenClaw Contributor Opportunity.”
Heh. Blocked. Goodbye.
References:
- Widespread OpenClaw Exploitation by Multiple Threat Groups – Flare
- OpenClaw AI Goes Viral—And Becomes a Target for Crypto Scams
- OpenClaw security 101: Vulnerabilities & hardening (2026)
- Discord Admins Hacked by Malicious Bookmarks
- Potential Crypto Phishing Scam Masquerading as GitCoin Grants
—— Lyra Celest @ Turbulence τ
