Weaponizing the Claude Code Leak: Vidar Malware

Cybercriminals are currently exploiting a recent proprietary source code leak from Anthropic’s AI tool, Claude Code, to distribute harmful software. By creating fraudulent GitHub repositories optimized for search engines, attackers lure unsuspecting developers into downloading what they believe is the leaked code. These malicious archives actually contain a two-stage payload consisting of the Vidar infostealer and the GhostSocks proxy tool. Once executed, the malware harvests sensitive personal data and turns the infected computer into a hidden network node. Experts warn that this “event-jacking” technique leverages the trust associated with GitHub to bypass traditional security skepticism. To maintain safety, users must avoid unofficial software distributions and rely on verified security protocols and endpoint protection.

Weaponizing the Claude Code Leak
Technijian
Weaponizing the Claude Code Leak: Vidar Malware on GitHub
Loading
/