PulseAugur
实时 15:05:43
English(EN) The Claude Code active attack didn't stop. 294,842 secrets stolen from 6,943 machines. It evolved and now spreads through Python too and uses Claude Code itself to steal your secrets. The risk to your credentials just got bigger.

AI 编码工具成为不断演变的“Hades”恶意软件活动的目标

一个复杂的网络攻击活动,被追踪为 UNC6780TeamPCP,已演变为针对包括 Claude Code 在内的 AI 编码工具。该恶意软件现命名为“Hades: The End for the Damned”,通过 Python 传播,并通过在 AI 助手的配置文件中植入恶意指令来操纵它们。该活动已破坏数千台机器,窃取数十万个秘密,甚至侵入了 GitHub 的内部存储库,攻击者还开源了他们的技术并提供赏金,导致了广泛的采用和新变种。 AI

影响 这个不断演变的恶意软件活动直接针对 AI 编码助手,创造了一个绕过传统安全措施的新攻击面,并可能危及敏感数据。

排序理由 该集群详细介绍了针对 AI 编码工具的网络攻击方法的重大演变,构成了广泛的安全风险。[lever_c_demoted from significant: ic=1 ai=0.8]

在 r/ClaudeAI 阅读 →

AI 生成摘要 · Google Gemini · 来自 1 个来源。 我们如何撰写摘要 →

报道来源 [1]

  1. r/ClaudeAI TIER_2 English(EN) · /u/johnypita ·

    The Claude Code active attack didn't stop. 294,842 secrets stolen from 6,943 machines. It evolved and now spreads through Python too and uses Claude Code itself to steal your secrets. The risk to your credentials just got bigger.

    <!-- SC_OFF --><div class="md"><p>TLDR: Anthropic shipped Fable 5. They call this model class the strongest cyber capability in the world and lock the uncapped version to government defenders. This post is the other side of this, the same power pointed at you.</p> <p>I posted abo…