Infostealers Are Hijacking Claude Sessions and Draining Subscriptions
2026-08-31
Security Affairs

The information displayed in the AIM should not be reported as representing the official views of the OECD or of its member countries.
Infostealer malware has targeted Anthropic's Claude AI platform, hijacking active user sessions to bypass authentication and drain paid usage, resulting in unauthorized charges and privacy breaches. Anthropic is responding by revoking access, removing payment methods, and refunding affected users. The incident highlights vulnerabilities in AI session management exploited by malware.[AI generated]