Infostealer malware hijacks Claude sessions
Malware Activity
Updated: 30.08.2026 17:30
· First: 30.08.2026 17:30
· 📰 1 src / 1 articles
· H score: 36
Anthropic warned that infostealer malware is stealing Claude login sessions from infected PCs, letting attackers reuse them for account access and consumption of usage. The company is signing out affected users, removing saved payment methods, and refunding charges it identifies as unauthorized. Anthropic tied the activity to Vidar, LummaC2, StealC, RedLine, Acreed, and Atomic Stealer (AMOS), with infections likely arriving through downloads or malicious apps.