INFOSTEALER malware is hijacking active sessions of Anthropic's Claude, allowing attackers to access accounts and drain paid subscriptions without needing passwords. Anthropic is revoking access and refunding unauthorized charges as a precaution. Users are advised to run malware scans and change passwords with two-factor authentication. The malware is believed to target Windows and macOS systems, bypassing security measures like multi-factor authentication. Anthropic specifically called out various infostealer families involved, including Vidar and RedLine.
Infostealer malware steals Claude sessions, empties paid accounts
Article by CyberSIXT