Anthropic warns infostealer malware is hijacking Claude sessions to drain usage

Summary

Anthropic has alerted Claude users to a threat where infostealer malware on their personal computers is hijacking active Claude login sessions. This allows attackers to gain unauthorized access to user accounts and consume their allocated Claude usage.

IFF Assessment

FOE

The article describes a new method of account hijacking and resource abuse, which poses a direct threat to users and their services.

Defender Context

This incident highlights the increasing sophistication of infostealer malware, which is now targeting active session tokens for cloud-based AI services. Defenders should be aware of the risks associated with session hijacking and educate users on the importance of maintaining endpoint security to prevent malware infections that could lead to account compromise.

Read Full Story →