Home/Events/Unauthorized Access to Claude Accounts Leads to Token Theft

Unauthorized Access to Claude Accounts Leads to Token Theft

Confirmed
Confidence
80%
Impact: 60%
Updated 1h ago

Consensus Brief

Multiple users of Anthropic's Claude AI have reported unauthorized token consumption linked to compromised session keys. Anthropic acknowledged the issue, attributing it to infostealer malware that steals login sessions, but did not provide specific details on how the access was gained.

Sourced from
Primary: TechCrunch

What Changed Since Last Update

1h ago

Users are now aware of potential token theft due to compromised session keys, leading to increased scrutiny of account security.

Claim Ledger

4 claims tracked across sources

Confirmed Fact

A compromised Claude session key was used to mint unauthorized Claude Code OAuth tokens.

Confirmed Fact

Anthropic issued a partial refund of £44.49 for the remaining time on a $200-per-month subscription.

Official Claim

Infostealer malware is being used to steal Claude login sessions from users' computers.

Independent Finding

Anthropic did not send a warning email to all affected users, including Grant de Swardt.

Role-Based Impact Analysis

Source Timeline

1 source corroborating