AI cybersecurity

Anthropic closes Claude sessions stolen by malware and deletes saved cards


The theft happens on the user's computer and bypasses the password and second factor. The company logged accounts out and refunded unauthorized charges.

September 3, 2026 · Translated from the Spanish original

What happened

Why it matters

The number

6 malware families. Vidar, Lumma, StealC, RedLine, Acreed and Atomic Stealer. None was built to attack Claude. They collect everything they find, and someone later went looking for the sessions that were worth something.

Context

Anthropic was explicit on a point these notices usually leave out: closing the session invalidates what was stolen, “but it does not remove the malware.” If the machine is still infected, the next login can be captured just the same. That’s why the instruction to those affected was to clean the machine before saving a payment method again, not the other way around.

What’s next

Bottom line

The market for stolen sessions has been operating for years on email, banks and online stores. What’s new is that an AI subscription is now worth enough to appear in the same catalog.

Sources

Related notes

← All notes