Anthropic says attackers used stolen Claude sessions to consume users' AI usage. Identified stealers include Vidar, LummaC2, StealC, RedLine, Acreed and Atomic Stealer (AMOS). The important part.. a stolen authenticated session can potentially be abused without the attacker knowing your password or repeating MFA. Anthropic has revoked affected sessions and removed saved payment methods and emailed affected users too

1 comment

sorted by: hot top controversial new old
[–] 6 points 12 hours ago

Another big success for big tech

  • source