PulseAugur
EN
LIVE 19:18:40

Malicious Claude Code artifact installs infostealer via Google search

A user on Reddit reported a security incident involving a malicious artifact for Claude Code that appeared in Google search results. The artifact, hosted on what seemed to be a legitimate Anthropic domain, led to the installation of a macOS infostealer after the user executed a command. The user emphasized that the deceptive nature of the artifact, appearing in official search results, made it difficult to detect. AI

IMPACT Highlights potential security risks for users installing AI tools through search engines.

RANK_REASON User-reported security incident involving a third-party artifact related to an AI product.

Read on r/ClaudeAI →

AI-generated summary · Google Gemini · from 1 sources. How we write summaries →

Malicious Claude Code artifact installs infostealer via Google search

COVERAGE [1]

  1. r/ClaudeAI TIER_2 English(EN) · /u/PressureGullible547 ·

    PSA: a malicious published Claude artifact is ranking on Google for Claude Code install queries — it installed a macOS infostealer on my Mac

    <!-- SC_OFF --><div class="md"><p>Today I searched for how to install Claude Code. A first-page Google result looked exactly like Anthropic’s install docs. It was a <strong>published Claude artifact,</strong> hosted on a legitimate Anthropic domain, so nothing about the URL looke…