Anthropic has issued a security warning to Claude users after identifying an attack pattern in which hackers steal active session tokens to hijack accounts. Rather than cracking passwords or bypassing two-factor authentication directly, the attackers capture the session credentials that keep users logged in, effectively walking through the front door with a stolen key.
How the Attack Works
Session hijacking is not a new technique, but its application to AI platform accounts signals that Claude is now a high-value target worth sophisticated criminal effort. When a user logs into Claude, the platform issues a session token that keeps them authenticated for a period of time. If an attacker can steal that token, typically through malware, phishing, or browser-based exploits, they can impersonate the user entirely. Standard defenses like strong passwords and authentication apps offer no protection once a valid session token is in an attacker's hands.
Key Facts
- Attackers are stealing session tokens rather than targeting login credentials directly.
- The method bypasses two-factor authentication because the session is already authenticated.
- Anthropic publicly disclosed the threat to warn users and prompt protective action.
- Users should log out of all sessions and change passwords if they suspect compromise.
- Keeping software and browsers updated reduces the risk of token theft via malware.
The disclosure comes at a sensitive time for Anthropic. The company has faced scrutiny over data handling practices in recent months, including a separate incident in which user conversations became visible in search engine results. That episode raised questions about how session and sharing data is managed at the platform level, concerns that this latest warning will likely amplify.
Session token theft is particularly dangerous because it sidesteps the authentication layer entirely. By the time a user notices unusual activity, significant damage may already be done.Security researchers commenting on the Anthropic disclosure
A Pattern of Security Pressure on AI Platforms
This warning arrives alongside a broader trend of adversarial pressure on AI services. Earlier this year, it emerged that Alibaba used tens of thousands of fake accounts to extract Claude model data, demonstrating that attackers are motivated by the intellectual and commercial value of what lives inside these platforms, not just user credentials. Account hijacking fits that same pattern: a compromised account could be used to run automated queries, extract conversation history, or abuse API access.
The concern is not limited to individual users. Businesses and developers who rely on Claude through Anthropic's API could face exposure of proprietary prompts, internal workflows, or sensitive data shared during sessions. For enterprise customers in particular, a hijacked account could represent a significant operational and compliance risk. It is worth noting that firms like Accenture have been building security-focused AI products on Claude, and incidents like this will shape how enterprise buyers evaluate platform trustworthiness going forward.
Anthropic's decision to go public with the warning is consistent with its stated commitment to transparency, though the disclosure also puts pressure on the company to demonstrate that it is hardening its infrastructure. Users are advised to review their active sessions through account settings, terminate any sessions they do not recognize, update their passwords, and ensure their devices are free of malware. Enabling alerts for new logins, where available, adds another layer of visibility.
The incident is a reminder that as AI assistants become embedded in daily professional and personal workflows, they inherit the same threat landscape as any other web platform handling sensitive data. The indexing of Claude users' private chats in Google Search earlier this year showed that data exposure can come from unexpected directions. Session hijacking adds a more deliberate, targeted vector to that picture. Keeping an eye on the latest Claude AI news is one way users can stay informed as the security situation evolves.