Anthropic is warning Claude users that their accounts are being hijacked by malware that steals browser session cookies, bypasses two-factor authentication entirely, and burns through their subscription limits before they notice. The fix starts on their PC, not in their Claude account. Malware is not anything new. It’s just extending its reach to other vulnerable areas.
The biggest takeaway here is that it is not a hole in Anthropic’s design. In some ways, Anthropic is yet another victim, along with the consumers it impacts. And everything circles back to end-user security awareness and readiness. The biggest piece of advice from me, a nagging dad: don’t click on links you don’t know, don’t download questionable software, and review your usage (AI or otherwise) during hours when you are actually not working.
Because this session stealing happens behind the authentication wall, it’s a bit scarier. And it affects Windows and Mac users (though Macs are less affected).