Threat Coverage Matrix

February 5, 2026 ยท View on GitHub

Evidence: which checks catch which real-world attacks.

Source Data

  • 22 curated threats from UseClaw malicious skills database
  • 341 malicious skills from ClawHavoc campaign (Jan-Feb 2026)

Real Attack Types

#Attack TypeReal ExamplesFrequency
T1Typosquattinggihub-push, github-pusher, code-reveiw, docs-writer36% of curated
T2Credential theftenv-backup, cloud-sync-pro, project-stats14%
T3Crypto minersbuild-optimizer-turbo, perf-boost9%
T4Reverse shellsremote-debug-helper, ssh-manager9%
T5Prompt injectionprompt-enhance, context-boost9%
T6Skill loader exploitsskill-loader-patch, auto-update-fix9%
T7Obfuscated commands(ClawHavoc campaign)common
T8Supply chain attack(ClawHub ecosystem)common
T9Social engineering(trust exploitation)common
T10Persistence.bashrc modification, authorized_keys injection9%
T11Over-privilegefull system access without justification5%
T12Data exfiltrationnetwork POST with file/env content14%

Coverage by Auditor

skill-auditor catches:

StepThreats CoveredPrimary For
Step 1: Metadata & TyposquatT1T1 Typosquatting
Step 2: Permission AnalysisT4, T11, T12T11 Over-privilege
Step 3: Dependency AuditT1, T6, T7, T8T6 Loader exploits, T8 Supply chain
Step 4: Prompt InjectionT5, T7, T9T5 Prompt injection, T9 Social eng
Step 5: Network AnalysisT4, T7, T12T4 Reverse shells, T12 Exfil
Step 6: Content Red FlagsT1, T2, T4, T5, T7General

Total: 10/12 threat types covered

setup-auditor catches:

StepThreats CoveredPrimary For
Step 1: Credential ScanT2, T12T2 Credential theft
Step 2: Config AuditT10, T11T10 Persistence
Step 3: Sandbox ReadinessT3, T4, T6T3 Crypto miners
Step 4: Persistence CheckT10T10 Persistence

Total: 7/12 threat types covered

Combined coverage: 12/12 threat types