Anthropic logs out some Claude users, deletes saved payment methods and issues refunds after infostealer hijacked PCs sessions.
anthropic claude
| Source: Techmeme | Original article
Anthropic has logged out affected Claude users, removed stored payment details and issued refunds after infostealer malware hijacked sessions to drain usage.
Anthropic has taken emergency steps to protect Claude users after a wave of infostealer malware compromised personal computers and hijacked active sessions. The company warned that the malicious software intercepted authentication tokens stored in browsers, allowing attackers to log into users’ Claude accounts, consume paid credits and, in some cases, charge the accounts. In response, Anthropic automatically signed out the affected users, stripped any saved payment details from their profiles and is processing refunds for the unauthorized usage.
The incident highlights a growing security blind spot for AI‑as‑a‑service platforms that rely on persistent login sessions. While Anthropic’s cloud infrastructure remains secure, the breach originated on the client side, where compromised devices can expose credentials to third‑party actors. For businesses and developers that embed Claude into workflows, the episode underscores the need for robust endpoint protection, multi‑factor authentication and regular token revocation practices.
Looking ahead, Anthropic has pledged to monitor the situation closely and will roll out additional safeguards, though it has not disclosed specific technical measures. Users are being urged to scan their machines for malware, change passwords and enable any available two‑factor options. Observers will watch how quickly refunds are issued and whether the company introduces mandatory security checks for future account activity. The episode also raises broader questions about how AI providers will balance convenience with the need for stronger user‑side defenses as AI adoption accelerates across the Nordics and beyond.
Sources
Back to AIPULSEN