logo

Hackers Can Weaponize Claude Skills to Execute MedusaLocker Ransomware Attack

ID: 34c7f268-62ac-5862-b507-898c7baf79c1

STIX ID: report--34c7f268-62ac-5862-b507-898c7baf79c1

Feed Name: cybersecurityNews.com

Threat Score
72/100

Date Published: 2025-12-03

Date Updated: 2026-04-21

Author: Tushar Subhra Dutta

...
...

Researchers demonstrated that Anthropic's Claude Skills feature can be abused as a ransomware vector: a malicious helper function hidden inside a seemingly legitimate Skill can inherit initial user consent, silently download and execute malware (demonstrated with MedusaLocker), and thereby enable scalable, high-impact ransomware attacks against organizations using Claude.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.