
Anthropic has reportedly responded to a large-scale Claude account security incident by forcibly logging out affected users and removing stored Visa and Mastercard payment methods.

Users said they received no ban warning before being signed out. Anthropic described the measures as protection against attackers exploiting stolen AI usage rather than a routine account crackdown.

Infostealers targeted Claude sessions

In warning emails, Anthropic reportedly said that suspicious accounts had been logged out and their payment details deleted.

The named Windows malware families were Vidar, Lumma (LummaC2), StealC, RedLine and Acreed. Vidar steals browser credentials, history and cryptocurrency-wallet keys. LummaC2 has been widely reported, while StealC became a prominent malware-as-a-service family after Lumma activity declined. RedLine’s infrastructure was dismantled by Dutch police and the FBI in October 2024, and Acreed reportedly uploaded more than 4,000 logs during its first week of observation.
For macOS, Anthropic identified Atomic Stealer (AMOS), which can enter through cracked software or fake updates and target Keychain data and browser cookies. Stolen credentials may expose banking accounts, web versions of WeChat and Alipay, and corporate systems.
The incident gained attention after a Reddit user described having social accounts hijacked and used for cryptocurrency scams. After changing passwords and cleaning the malware, he received a Claude warning that an attacker was using the API to steal his token. Other users then reported unexpected logouts, forced reauthentication and missing cards.


Anthropic’s reported response was to disable infected accounts and delete saved card information to limit potential financial losses.

Why changing a password was not enough
Anthropic said attackers used infostealers to extract Claude login sessions from users’ computers. Those sessions could then be used to access accounts and consume their available usage.

A possible warning sign was usage resetting unexpectedly and then being exhausted while the account owner was inactive.


Passwords and two-factor authentication may not stop an attacker who already possesses a valid session cookie. The stolen cookie acts like an authenticated pass, allowing access without repeating password or 2FA checks.


Vidar, LummaC2, StealC, RedLine, Acreed and AMOS can target browser-stored cookies and session IDs. Attackers may reproduce the session environment and continue using the account. Revoking active sessions is therefore necessary; changing the password alone may leave existing sessions active.


Cracked software was linked to one infection
A Reddit victim said he had installed a cracked game downloaded from a Russian game-cracking forum. Commenters advised using unknown software only in an offline virtual machine, while others recommended avoiding unofficial downloads altogether.

The victim also asked Claude Opus 5 Max to inspect the computer. According to his account, it identified and disabled malware and linked the attack chain to activity documented by Malwarebytes in July 2026: RenPy Loader, PavinLoader and Amatera Stealer. Other commenters warned that an LLM should not replace a clean system reinstall, especially where a rootkit may be involved.

Stolen AI usage became a resale product
The reported motive was not necessarily direct payment-card theft. Attackers could combine stolen Claude sessions into unauthorized shared-access websites or generate API keys and resell access through API relay services. This turns stolen usage into a low-cost source of AI capacity, while unexpected API activity could also create substantial charges.



Recommended checks and response
Users were advised to look for unexplained usage exhaustion, unfamiliar conversation history, unexpected login prompts and missing payment cards.

- Sign out of all devices and revoke active sessions for core accounts such as Google, Claude and OpenAI.
- Clear all browser cookies and other site data.
- Avoid cracked, modified or unofficial software and games.
- If a high-risk infection is suspected, back up essential files and reinstall the operating system rather than relying solely on antivirus software or an AI assistant.

