Tech News from Simmons Systems
  • Home
  • About
anthropic

Anthropic Warns Infostealer Malware Is Hijacking Claude Sessions to Drain Usage

30 Aug 2026 • 1 min read

Anthropic is warning some Claude users that infostealer malware on their computers is stealing active Claude login sessions, letting attackers access accounts and drain their usage quotas. The company is responding by signing affected users out of Claude, removing saved payment methods, and refunding charges it identifies as unauthorized. Users may notice the attack if their usage limits appear to refill and then drain while they are not actively using Claude.

The stolen sessions allow attackers to bypass normal password and two-factor authentication because infostealers copy already-authenticated browser sessions. Anthropic says the malware is unrelated to Claude itself and typically arrives through downloads or malicious apps, such as pirated software. The company attributes the attacks to several infostealers, including Vidar, LummaC2, StealC, RedLine, and Acreed on Windows, along with Atomic Stealer (AMOS) on a small number of Macs.

When Anthropic detects a compromised account, it revokes the stolen session and removes saved payment methods to prevent unauthorized purchases. The company stresses that the malware likely collected many things from infected machines, with Claude sessions simply being among the data harvested. Users are advised to avoid downloading pirated software and to run malware scans to protect their accounts from similar session-hijacking attacks.

Read More at the original source →

Data Broker Radaris Loses Its Domains in New Jersey Privacy Law Case

The consumer data broker Radaris loses control of its core web properties after a court orders radaris.com and more than a dozen other domains transferred to plaintiffs who sue under Daniel's Law, a New Jersey statute that lets law enforcement officials, judges, government personnel, and their families
17 Sep 2026 1 min read

Spain Receives First Reported Data Breach Carried Out by AI Agent

Spain's Data Protection Agency (AEPD) receives its first notification of a data breach allegedly carried out by an AI agent powered by a known large language model. The reporting organization says the agent searches for flaws, logs into systems, probes applications for additional vulnerabilities, and ultimately modifies personal
16 Sep 2026 1 min read

Cisco Rushes Patches as Actively Exploited ISE Zero-Day Bypasses Authentication

Cisco is urging customers to patch a maximum-severity zero-day vulnerability in its Identity Services Engine (ISE) and ISE Passive Identity Connector (ISE-PIC) products, warning that attackers are actively exploiting the flaw in the wild. The vulnerability, tracked as CVE-2026-76460, allows remote attackers to bypass authentication by sending a crafted request
16 Sep 2026 1 min read
Tech News from Simmons Systems © 2026
  • Sign up