Anthropic Users Hit by Infostealer Attacks, Session Thefts
A threat actor used multiple infostealers to harvest session data and hijack Claude accounts belonging to an unknown number of users.
Dark Reading reports that a threat actor deployed a variety of infostealer families to collect session information, which was then used to access Claude accounts belonging to an unknown number of users. Anthropic has not disclosed the scale of the compromise. The incident underscores session token theft via infostealer logs as an effective route into AI platform accounts.