All seven core .md filenames of the OpenClaw system have been registered as domain names. The IPs are all in the 198.18.1.x range, suggesting they were registered in bulk by the same registrar or the same person. The actual risk is currently very low (OpenClaw reads data via the file system API, not HTTP), but as a defense-in-depth measure, it is recommended to add them to the hosts file for blocking.
This article is machine translated
Show original

xiyu
@ohxiyu
5 步排查+修复:
全局搜索所有 http://heartbeat.md 引用
判断每个引用是安全的绝对路径还是可能被解析为 URL 的裸文件名
检查是否已经有过外部请求(DNS/网络日志)
全部改为绝对路径
hosts 文件屏蔽 http://heartbeat.md 域名 → 127.0.0.1(从系统层面兜底,需要你确认后执行)
hosts

From Twitter
Disclaimer: The content above is only the author's opinion which does not represent any position of Followin, and is not intended as, and shall not be understood or construed as, investment advice from Followin.
Like
Add to Favorites
Comments
Share
Relevant content




