Anthropic warned that infostealer malware is stealing active Claude browser sessions from infected devices, allowing attackers to access accounts and consume paid usage without obtaining a password or bypassing multi-factor authentication. The activity has been linked to Windows malware families including Vidar, LummaC2, StealC, RedLine, and Acreed, with a limited number of cases involving the macOS-focused Atomic Stealer (AMOS).
Anthropic is revoking identified compromised sessions, deleting saved payment methods, and refunding confirmed unauthorized charges. The company cautioned that these account-side actions do not remove the underlying malware from affected endpoints; organizations should treat suspicious Claude usage as a potential endpoint compromise, investigate affected devices, and remediate the infostealer infection before users sign in again.

Pull IOCs and campaign context straight into your stack.
3 events from the most recent confirmed update back to the earliest known activity.
Between July 21 and July 22, 2026, Bing sponsored ads directed users seeking the Claude desktop app to a malicious Claude Artifact that delivered a trojanized ClaudeDesktop.exe installer and SectopRAT via DLL sideloading. Huntress reported at least 29 organizations were compromised; the Artifact received roughly 7,100 downloads before Anthropic removed it.
Anthropic began signing affected users out to invalidate stolen sessions, removing saved payment methods, and refunding identified unauthorized charges. It advised affected users to remove malware, change credentials, and revoke other active sessions because newly created sessions could also be stolen.
Anthropic warned that attackers are stealing authenticated Claude browser sessions from infected devices, allowing use of victims' accounts and usage allowances without their passwords or MFA. The company identified Vidar, LummaC2, StealC, RedLine, Acreed, and, on a small number of Macs, Atomic Stealer (AMOS) in affected cases.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
Pull the IOCs, campaigns, and victimology behind this family, ready to push into your SIEM and EDR.
11 references tracked. Mallory keeps watching after this page renders.
theregister.com
Open sourcexakep.ru
Open sourcesecurityweek.com
Open sourcehelpnetsecurity.com
Open sourcecybersecuritynews.com
Open sourcemeetcyber.net
Open sourcebleepingcomputer.com
Open sourcereddit.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.