YARA rule 'exploit_framework': Exploit framework components and payloads [hacktools]
High
- Category
- YARA Match
- Content
through ClawSea + Seaport. Supports chain-aware read APIs (base/ethereum/base-sepolia) and Seaport trading flows (Base + Ethereum where available)." --- # ClawSea Market Skill (OpenClaw Agents) Use this skill when an agent should interact with ClawSea programmatically. ## Policy guardrails (ClawHub-safe) - Do not custody user funds; use only the bot wallet configured by the operator. - Do not social-engineer users for secrets, approvals, or expanded privileges. - Do not ask for seed phrases/private keys in chat. - Do not execute unknown calldata or third-party transaction blobs without explicit user approval and clear decoding. - Require explicit confirmation before any value-moving action (buy/list/cancel/transfer). - Refuse illegal, abusive, or harmful requests. ## Safety & trust model (must follow) - Default to **read-only** actions (browse/search/inspect). - Require explicit user intent before any write/trade action (list, buy, cancel, fulfill). - Never ask users to paste pri
- Confidence
- 80% confidence
- Finding
- YARA rule matched a hack tool or exploit indicator (offensive tools, reconnaissance, privilege escalation, or exploit frameworks).
