Advertisement
Claude Code Indirect Prompt Injection: Hijacking Developer Machines
Researchers demonstrate a new attack method leveraging indirect prompt injection in Claude Code, enabling the hijack of developer machines via malicious code in

Anthropic Claude Code GitHub Action Flaw Enables Repo Hijacking
A critical flaw in Anthropic's Claude Code GitHub Action allowed attackers to hijack public repositories using malicious issues, posing supply chain risks.
Anthropic Claude Code Integration of Mythos Model Raises Security Risks
Anthropic may be integrating its restricted Mythos model into Claude Code, raising concerns about autonomous agentic capabilities and AI safety levels.
Claude Code Sandbox Bypass: Anthropic Patches CLI Vulnerability
Anthropic recently addressed a sandbox bypass in Claude Code. This vulnerability could have allowed data exfiltration when combined with prompt injection.
Fake GitHub Repositories Deliver Vidar Infostealer via Claude Leak
Threat actors are exploiting the Claude Code leak, deploying fake GitHub repositories to distribute Vidar infostealer malware, targeting unsuspecting developers and
Claude Code Weaponized in Mexican Government Cyberattack
Analysis of how threat actors leveraged Anthropic’s Claude Code to automate exploitation and exfiltrate 150GB of data from Mexico's infrastructure ministry.

Claude Code Flaws Enable RCE & API Key Exfiltration
Multiple security flaws in Anthropic's Claude Code AI coding assistant allow remote code execution and API credential theft via configuration mechanisms.