Developers Warned As Fake Claude Code Installer Attacks Confirmed
Claude Code users are under active attack. A fake installer is exfiltrating passwords, cookies, and payment data from Chromium browsers.

Why it matters
Security threat targeting AI developer tools poses immediate risk to the AI workforce. This illustrates the supply-chain vulnerability of rapidly-adopted AI infrastructure and the need for verified distribution channels.
The key facts
5 to knowFake Claude Code installer confirmed actively exfiltrating data
Targets: decrypted cookies, passwords, payment methods
Attack vector: Chromium browser exploitation
Affected user base: developers using Claude Code
Security governance gap in AI tool distribution
Go to the source
Forbes Innovationforbes.com
Publisher excerpt: A fake Claude code installer can successfully exfiltrate decrypted cookies, passwords and payment methods from Chromium browsers. Here's how.
