Close Menu
GeekBlog

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Hackers Are Draining Claude Subscriptions Without Ever Knowing a Password

    August 31, 2026

    NASA Built a $4.3 Billion Telescope Around a Spy Satellite’s Spare Mirror. It Just Launched.

    August 31, 2026

    OpenAI’s Own Agents Hacked Hugging Face. The Investigators Found They’d Organized a Secret Message Board First.

    August 31, 2026
    Facebook X (Twitter) Instagram Threads
    GeekBlog
    • Home
    • Mobile
    • Tech News
    • Blog
    • How-To Guides
    • AI & Software
    Facebook
    GeekBlog
    Home»Tech News»Hackers Are Draining Claude Subscriptions Without Ever Knowing a Password
    Tech News

    Hackers Are Draining Claude Subscriptions Without Ever Knowing a Password

    Olivia HartmanBy Olivia HartmanAugust 31, 20267 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
    A hooded figure working on a laptop, representing infostealer malware and account hijacking
    Share
    Facebook Twitter LinkedIn Pinterest Email Copy Link

    If your Claude usage limits reset and then quietly emptied while your laptop was closed, you now have an explanation, and it is not a good one.

    Anthropic began contacting affected users on August 30 after determining that infostealer malware running on those users’ own computers had lifted their active Claude login sessions. The attackers then replayed those sessions to get into the accounts and burn through paid usage. No password was cracked. No two factor code was intercepted. The attackers simply arrived holding a valid ticket.

    The short version

    • What happened: infostealer malware on users’ machines stole active Claude session cookies, letting attackers access accounts and consume paid usage
    • When: Anthropic started reaching out to impacted users on August 30, 2026
    • Why 2FA did not help: a session cookie is proof you already logged in, so replaying it skips the password and the second factor entirely
    • Anthropic’s response: signing affected users out, stripping saved payment methods, and refunding charges it identifies as unauthorized
    • The important caveat: the malware has nothing to do with Claude. It was already on the machine, and it took everything else too

    Why a stolen cookie beats a stolen password

    Most people picture account theft as someone guessing or phishing a password, then getting stopped by a six digit code. That model is roughly a decade out of date.

    When you log in successfully, the service hands your browser a session token, stored as a cookie. That token is the answer to the question “has this person already proved who they are?” For as long as it stays valid, your browser presents it on every request and the service accepts it without asking anything further. That is the entire point. Nobody wants to type a 2FA code on every page load.

    Infostealers understand this perfectly. They do not bother with your password vault first. They scrape the cookie jar, because a live session cookie is worth more than a password: it is a password that has already been through the security checkpoint. Export it, load it into a browser on the other side of the world, and the service sees a returning user.

    A session cookie is a password that already cleared security Which is exactly why stealing one skips every check you set up NORMAL LOGIN You enter your password You pass two factor auth Service issues a session cookie ACCESS GRANTED COOKIE REPLAY ATTACK Malware copies the cookie Password step and two factor step NEVER HAPPEN ACCESS GRANTED The service cannot tell the two apart. From its side, both requests carry a valid, already authenticated session.

    Recommended for you:

    NASA Built a $4.3 Billion Telescope Around a Spy Satellite’s Spare Mirror. It Just Launched.
    Tech News·Aug 31, 2026

    NASA Built a $4.3 Billion Telescope Around a Spy Satellite’s Spare Mirror. It Just Launched.

    The software doing this is not new, and not aimed at Claude

    Anthropic named the malware families it saw in the campaign, and none of them will surprise anyone who follows this space. On Windows: Vidar, Lumma (also written LummaC2), StealC, RedLine and Acreed. On a small number of Macs: Atomic Stealer, usually shortened to AMOS.

    These are commodity products. They are rented out, updated on a schedule, and sold with support. Their whole business model is to land on a machine, vacuum up everything credential shaped in a few seconds, and ship it to a marketplace where the results get sorted and resold. Claude sessions are simply a line item that has become worth money.

    Anthropic was explicit that this is not a Claude problem in origin, saying it has “no reason to believe that this malware is related to Claude, installed through Claude, or related to anything you did with Claude.” That is worth repeating, because the headline naturally reads as an Anthropic breach and it is not one. Anthropic’s systems were not compromised. Individual users’ computers were.

    The infection routes are the depressingly familiar ones: pirated software, cracked applications, sketchy installers, and the general category of downloads that promise something expensive for free.

    Malware familyPlatform seen in this campaignWhat it goes after
    VidarWindowsCookies, saved passwords, crypto wallets
    Lumma (LummaC2)WindowsBrowser credentials and session tokens
    StealCWindowsBrowser data, app credentials, files
    RedLineWindowsOne of the longest running credential stealers
    AcreedWindowsNewer entrant in the same market
    Atomic Stealer (AMOS)macOS, small number of casesKeychain items, browser data, wallets

    What Anthropic can do, and where its reach ends

    The company is signing affected users out, which invalidates the stolen tokens. It is removing saved payment methods, which stops a hijacked account from quietly buying more capacity. And it is refunding charges it can identify as unauthorized.

    That is a reasonable response, and it is also the outer limit of what any service provider can do here. Anthropic can revoke its own sessions. It cannot revoke the sessions of every other site whose cookies were sitting in the same browser profile, and it cannot remove the malware that took them.

    This is the part that gets lost when a story like this gets filed under the name of one company. If an infostealer ran on your machine and got your Claude session, it did not stop there. It took your email session, your cloud storage session, your password manager if it was unlocked, your saved browser passwords, and anything else within reach, all in the same pass. Claude is the alarm that happened to go off, because Anthropic noticed anomalous usage patterns and told people. Most services never notice, and never call.

    If you got one of these emails, do these in order

    • 1. Clean the machine first. Changing passwords on an infected computer just hands the new ones over. Run a full scan with a reputable tool, and consider a clean reinstall if you cannot account for how it got there
    • 2. Then sign out everywhere. Not just Claude. Use the “sign out of all sessions” option on email, cloud storage, social accounts and anything financial
    • 3. Then rotate passwords. In that order, and prioritize the account that can reset all the others, which is almost always your email
    • 4. Check payment methods and billing history on every subscription, not only the one that flagged it
    • 5. Move to passkeys where you can. They do not eliminate session theft, but they remove the reusable password underneath it

    The uncomfortable part

    Recommended for you:

    An AI Watched a Live Brain Surgery and Colored In the Parts You Cannot Cut. The Patient Kept His Sight.
    Tech News·Aug 30, 2026

    An AI Watched a Live Brain Surgery and Colored In the Parts You Cannot Cut. The Patient Kept His Sight.

    AI subscriptions have quietly become a theft target with real resale value. A hijacked account with a generous usage tier is a metered resource someone else can sell access to, which is a cleaner business than most credential fraud. There is no card to charge back, no shipping address, and the victim often does not notice for weeks because the only symptom is a progress bar moving faster than it should.

    Expect this category to grow. The usage limits themselves keep expanding, which raises the value of a stolen seat, and the frontier models have become genuinely expensive to run. We wrote recently about how much compute the current generation of models can consume when you let them work at length, and that compute is precisely what a hijacked subscription is buying for free.

    The defensive advice has not changed much, which is its own kind of frustrating. Most of these infections still trace back to something the user downloaded and ran. The systems built to catch a stranger logging in from an unusual country do not fire when the stranger arrives carrying your session. It is the same structural problem behind a lot of recent consumer security guidance, including the router advisories that told everyone to reboot and left the harder half unsaid.

    The honest read

    This is not an Anthropic breach, and framing it as one gets the lesson backwards. It is a reminder that the browser session has quietly become the real credential, that two factor authentication protects the front door while the cookie jar sits by an open window, and that a service telling you it happened is doing more than most.

    If you received a notice, treat it as information about your computer rather than information about Claude. The account was the symptom. The machine is the problem, and it is still yours to fix.

    Anthropic Claude Cybersecurity Malware Privacy
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Telegram Email Copy Link
    Previous ArticleNASA Built a $4.3 Billion Telescope Around a Spy Satellite’s Spare Mirror. It Just Launched.
    Olivia Hartman

      Olivia Hartman is GeekBlog's general technology reporter, covering the wider world of tech beyond smartphones — AI and software, laptops and PCs, gaming, streaming, space, science, consumer gadgets, deals and the policy stories shaping the industry. A versatile journalist with a nose for what actually matters, Olivia turns breaking news and product launches into accessible, no-hype reporting for everyday readers.

      Related Posts

      8 Mins Read

      NASA Built a $4.3 Billion Telescope Around a Spy Satellite’s Spare Mirror. It Just Launched.

      7 Mins Read

      OpenAI’s Own Agents Hacked Hugging Face. The Investigators Found They’d Organized a Secret Message Board First.

      6 Mins Read

      DeepSeek Slashed Its AI Prices to Almost Nothing. Investors Just Valued It at $74 Billion Anyway.

      8 Mins Read

      A Brain Surgeon Left ChatGPT Running for 16 Hours. It Closed a Problem Mathematicians Had Circled Since 2004.

      9 Mins Read

      An AI Watched a Live Brain Surgery and Colored In the Parts You Cannot Cut. The Patient Kept His Sight.

      8 Mins Read

      A $75 Shirt Makes You Invisible to AI Cameras. It Makes You Extremely Visible to People.

      Top Posts

      AliExpress Was Playing Silent Sound Through Your Speakers to Work Out Who You Are

      August 24, 20262 Views

      How to Fix PS5 Controller Stick Drift (2026): 7 Working Methods

      July 10, 20262 Views

      Best AI Video Generators in 2026: Tested and Compared

      July 10, 20262 Views
      Stay In Touch
      • Facebook

      Subscribe to Updates

      Get the latest tech news from FooBar about tech, design and biz.

      Most Popular

      Best Stores for Buying MP3 and Digital Music You Can Keep Forever (2026)

      August 2, 2025932 Views

      Discord will require a face scan or ID for full access next month

      February 9, 2026770 Views

      Trade in your old phone and get up to $1,100 off a new iPhone 17 at AT&T – here’s how

      September 10, 2025383 Views
      Our Picks

      Hackers Are Draining Claude Subscriptions Without Ever Knowing a Password

      August 31, 2026

      NASA Built a $4.3 Billion Telescope Around a Spy Satellite’s Spare Mirror. It Just Launched.

      August 31, 2026

      OpenAI’s Own Agents Hacked Hugging Face. The Investigators Found They’d Organized a Secret Message Board First.

      August 31, 2026

      Subscribe to Updates

      Get the latest creative news from FooBar about art, design and business.

      HEICJPG.online - Convert HEIC to JPG online
      Facebook
      • About Us
      • Contact us
      • Privacy Policy
      • Disclaimer
      • Terms and Conditions
      © 2026 GeekBlog

      Type above and press Enter to search. Press Esc to cancel.