Skip to main content

Anthropic signs out Claude users after infostealer attacks

4 OCTOBER 2026·2 MIN READ·4 SOURCES

Anthropic warned users that infostealer malware had stolen active Claude login sessions, allowing attackers to access accounts and use up their limits. The company said it was revoking compromised sessions, signing affected users out and deleting their saved payment information.

Anthropic signs out Claude users after infostealer attacks

Key takeaways · 4

  • 01

    Stolen active Claude sessions let attackers access accounts and exhaust usage limits.

  • 02

    Anthropic said the attacks came from compromised computers and did not exploit a vulnerability in its system.

  • 03

    The company was signing affected users out, deleting saved payment information and reviewing unauthorized charges for refunds.

  • 04

    Anthropic urged users to remove malware from their computers and change relevant credentials.

What Anthropic says happened

Anthropic warned users that infostealer malware had been used to take active Claude login sessions.[1] With those sessions, attackers could enter accounts and consume users’ available usage limits.[1] The company said the attacks were launched from compromised computers and involved common infostealer malware, not a vulnerability in Anthropic’s system.[1]

Account and payment response

Anthropic said it was revoking compromised sessions and signing affected users out.[1] It also deleted affected users’ saved payment information and said it would refund charges that its investigation determined were unauthorized.[1] The company’s response, reported as occurring on September 2, 2026, included both the sign-outs and payment-information deletion.[2]

Signs of possible account access

Anthropic said unusual activity around usage limits may indicate unauthorized account access.[1] One example it gave was a limit resetting and then being exhausted rapidly.[1] On August 4, Claude Max 20x user Grant De Swardt, an independent AI consultant in East Sussex, U.K., noticed unexpected account activity; he said his token usage was climbing on a day he had not been working.[4] That account of unexpected usage illustrates the kind of activity users may want to check, but the evidence does not say that every unusual usage pattern means an account was compromised.[1][4]

What users should do

Anthropic said account-level actions cannot remove malware already present on an infected computer.[1] It urged users to remove malware and change relevant credentials, and advised caution when downloading software, especially from unofficial sources.[1] The company identified the Windows infostealers Vidar, LummaC2, StealC, RedLine and Acreed, and said it also found Atomic Stealer, or AMOS, on some Macs.[1] The attacks mainly targeted Windows PCs and some Macs; phones were unaffected.[3] A user’s account actions should therefore be paired with checking the device itself.[1]

For teams relying on Claude, a stolen active session can create both account-access and usage-limit problems without exploiting a flaw in the service. The response also shows why incident handling should consider the endpoint as well as the account: signing out a user does not remove malware from an infected computer.

Why it matters
Daily session

Put this to work — one session a day, built for your industry.

Create a free account for a daily session — eight questions and one real-work challenge, on the news that affects your role.

Start free

How this developed

  1. 4 October 2026

    Anthropic signs out Claude users after infostealer attacks

Sources

AI fluency, one session a day, built for your work.