Dispatch
Anthropic is warning users that infostealer malware is draining Claude subscriptions through hijacked sessions
Attackers use commodity infostealers to lift Claude login sessions off developer machines, then spend the account's token allowance. TechCrunch documents at least four affected users, including Grant De Swardt whose $200/month account burned tokens between 4 and 5 August while he was not working; Anthropic signed users out, invalidated authorizations and issued partial refunds, though De Swardt got no warning email and a refund of only 44.49 pounds. Anthropic declined to give itemized usage reports, which is exactly what makes this hard to spot on your own.
↳ Follow the thread