security1 distinct publisher
Click-Exfil turns one pasted command into Claude Code account takeover
A red teamer has published a proof of concept that fingerprints the victim's operating system and then asks them to upload Claude Code's plaintext token file, a theft that slips past EDR's execution monitoring and outlives a password reset because the stolen refresh token keeps working after the reset.
Publishers:catchingphish.com
Reality
- Evidence45
- Adoption8
- Hype gap+20
- Incentives58