logo

Anthropic locks out Claude users after infostealers hijack login sessions

ID: a038f774-6b73-5710-96c9-4f4318e69174

STIX ID: report--a038f774-6b73-5710-96c9-4f4318e69174

Feed Name: Help Net Security

Threat Score
70/100

Date Published: 2026-08-31

Date Updated: 2026-08-31

Author: Zeljka Zorz

...
...

Anthropic began locking users out of Claude after an active infostealer campaign—attributed to malware families including Vidar, Lumma, StealC, RedLine, Acreed and Atomic Stealer—stole browser session cookies and credentials, allowing account hijacks and unauthorized charges; Anthropic invalidated sessions, removed saved payment methods, refunded charges, and advised victims to clean malware, rotate passwords, enable 2FA, and re-establish sessions only after removal of the infection.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.