Skip to content

Anthropic Claude Code leak used to spread malware

devApr 4, 202614225

A source code leak of Anthropic's Claude Code has been weaponized by threat actors. Attackers reposted the leaked repositories on GitHub with embedded infostealer and other malware payloads. GitHub issued DMCA takedowns for nearly all forks of the official Claude Code repo to limit spread. U.S. cyber agencies and security firms warn the leak raises supply chain and national security risks, since malicious actors can repurpose developer tools to distribute malware.

Key Highlights

Attackers posted leaked Claude Code repositories with embedded infostealer malware.
GitHub issued DMCA takedowns for nearly all Claude Code forks.
U.S. agencies warn the leak increases supply chain and national security risk.
3 sources