Alert Across the Internet! Claude Code Source Code Leak Triggers "Secondary Disaster": Hackers Set GitHub Phishing Traps

marsbitPublished on 2026-04-03Last updated on 2026-04-03

Abstract

A major security alert is circulating online following the accidental leak of Claude Code's source code by Anthropic. Hackers are exploiting the incident by creating fake GitHub repositories that distribute the information-stealing malware known as **Vidar**. Posing as a user named `idbzoomh`, the threat actor set up multiple repositories claiming to offer "unlocked enterprise features" from the leaked source code. These repositories are optimized for search engines to appear at the top of results for queries like “Claude Code leak,” increasing their reach. If a user downloads and executes the provided files, the Vidar malware is deployed. It is a sophisticated stealer designed to harvest sensitive data such as browser credentials, cryptocurrency wallets, and personal information. The attack also installs **GhostSocks**, a proxy tool that establishes hidden communication channels for remote control and data exfiltration. Security firm Zscaler notes that these malicious repositories update frequently, making it easier to bypass basic security scans. At least two similar repositories have been identified, suggesting the same attacker is testing different distribution methods. This incident highlights the compound risks in the AI era, where initial human error leads to secondary threats like social engineering. Developers are urged to obtain software only through official channels and avoid executing untrusted binaries.

According to an April 2nd report, the Claude Code source code leak incident caused by an Anthropic human error continues to escalate. Currently, hackers have exploited this hot topic to spread information-stealing malware named Vidar via fake repositories on GitHub.

Upgraded Bait: Claiming to "Unlock Enterprise-Level Features"

Monitoring reports from security company Zscaler show that a user named idbzoomh has created multiple fake repositories on GitHub.

  • Precision Phishing: The hacker claims in the repository description to provide leaked source code that "unlocks enterprise features," luring eager developers to download it.

  • SEO Optimization: To maximize the impact, the attackers optimized for search engine keywords, causing these malicious repositories to often rank at the top when users search for terms like "Claude Code leak".

Virus Profile: Vidar Infiltrates, Data "Relocated"

Once users are deceived into downloading and executing the contained executable files, the system is quickly compromised:

  • Information Theft: The implanted Vidar is a highly mature malware on the dark web, specifically designed to harvest browser account passwords, cryptocurrency wallets, and various types of sensitive personal information.

  • Persistent Latency: The virus also simultaneously deploys the GhostSocks proxy tool, setting up a secret channel for subsequent remote control and data exfiltration.

Risk Warning: Beware of "Free Lunches" from Unofficial Channels

Security researchers point out that the malicious compressed files in these fake repositories are updated at an extremely high frequency, making them easy to bypass basic security detection. At least two repositories with similar tactics have been discovered so far, suspected to be tests of different propagation strategies by the same attacker.

Industry Observation: The "Chain Set" of AI Security

From Anthropic's source code packaging mistake to hackers secondarily exploiting the hot topic for phishing, this incident reflects the complexity of security risks in the AI era. When the developer community becomes the target of attacks, basic digital literacy—not running binaries from unknown sources—remains the last line of defense.

Editors remind all developers: Please be sure to obtain tools through official Anthropic channels. Do not fall into the traps carefully designed by hackers out of curiosity or the pursuit of "cracked features."

Related Questions

QWhat is the primary malware being distributed through the fake GitHub repositories related to the Claude Code leak?

AThe primary malware being distributed is called Vidar, which is a sophisticated information-stealing malware known for harvesting browser credentials, cryptocurrency wallets, and other sensitive personal data.

QHow are the attackers making their fake GitHub repositories more visible to potential victims?

AThe attackers are using Search Engine Optimization (SEO) techniques by including popular keywords like 'Claude Code leak' in the repository descriptions, causing these malicious repositories to appear at the top of search results.

QWhat additional tool does the Vidar malware deploy on an infected system to maintain persistence and enable data exfiltration?

AThe Vidar malware also deploys a tool called GhostSocks, which is a proxy utility that creates a secret channel for remote control and ongoing data exfiltration from the compromised system.

QWhat human error at Anthropic initially led to the situation that hackers are exploiting?

AThe initial event was a source code leak of Claude Code caused by a human error at Anthropic, where the code was mistakenly made available, creating the opportunity for hackers to use it as a lure.

QWhat is the main advice from security researchers to developers to avoid falling victim to these traps?

AThe main advice is to only obtain tools through official Anthropic channels and to avoid downloading or running binary files from unverified sources, emphasizing that basic digital hygiene is the last line of defense.

Related Reads

AI is Killing 'Poor People's Entertainment'

AI Is Eliminating 'Entertainment for the Poor' This article discusses the rising cost of video gaming, arguing that AI is making digital entertainment increasingly expensive. It follows the example of a frugal gamer who, accustomed to waiting for discounts and buying second-hand games, now faces a new reality. Video game consoles like the PS5 Pro and Switch 2 are increasing in price post-launch, breaking the traditional pattern of降价 over time. Game prices are also rising, with major titles like GTA 6 launching at $80. Furthermore, the industry is moving towards eliminating physical media, exemplified by Sony's plan to stop PS disc production by 2028. This shift blocks the二手 market, a key cost-saving avenue for players. Even Valve's anticipated affordable Steam Machine launched with a high price and disappointing specs. Manufacturers cite inflation, supply chain issues, and rising development costs, but a core driver is the AI boom. AI data centers now consume semiconductor and memory resources once prioritized for consumer electronics like game consoles. This competition from a more profitable sector drives up hardware costs. Additionally, developing modern AAA games with massive teams over many years is astronomically expensive, pushing publishers towards digital-only distribution and subscription models to secure recurring revenue. The article suggests this trend extends beyond gaming. Video streaming, music platforms, cloud storage, and AI tools are increasingly locked behind complex subscription tiers. While AI promises future benefits, it is currently making digital entertainment and services more costly. The era of progressively cheaper, accessible online entertainment is ending, forcing consumers to pay more upfront for future technological promises.

marsbit21m ago

AI is Killing 'Poor People's Entertainment'

marsbit21m ago

The Demise of the Trillion-HKD ETF Myth: SK Hynix Plummets, Hong Kong Switches from 'Double Leverage' to 'Flexible Leverage', South Korea Restricts Leveraged ETF Investments

South Korea's AI-driven bull market has taken a sharp downturn, severely impacting SK Hynix's stock and prompting regulatory tightening in both Hong Kong and South Korea on single-stock leveraged products. The CSOP SK Hynix Daily Leveraged (2x) ETF, once the world's largest single-stock leveraged ETF with over HKD 130 billion in assets, saw its value plummet by over 80% as SK Hynix shares fell nearly 46% from their June peak, erasing more than HKD 100 billion. In response, Hong Kong's Securities and Futures Commission (SFC) revised its regulatory framework. Starting August 3rd, fixed 2x leverage for single-stock leveraged and inverse products will shift to a dynamic "flexible leverage" mechanism, where daily leverage can vary up to a maximum of 2x. This aims to balance market development with investor protection but has sparked debate about changes to the products' core features and potential reduced appeal for risk-seeking investors. Simultaneously, South Korean authorities announced plans to further restrict single-stock leveraged ETFs following two consecutive days of market circuit breakers. Proposed measures include capping individual investors' allocations to such products at 20% of their total financial investment assets, increasing trading costs, and enhancing suitability requirements. The Finance Minister publicly apologized, acknowledging insufficient initial risk assessment. Analysts note that while the long-term fundamentals for South Korean semiconductor firms like SK Hynix remain solid, short-term market volatility is heightened due to concentrated leveraged bets and shifting global risk sentiment. The regulatory moves in both markets signal a clear shift from encouraging innovation towards prioritizing risk control, reminding investors of the amplified risks inherent in leveraged products.

marsbit26m ago

The Demise of the Trillion-HKD ETF Myth: SK Hynix Plummets, Hong Kong Switches from 'Double Leverage' to 'Flexible Leverage', South Korea Restricts Leveraged ETF Investments

marsbit26m ago

After the Privatization of the Internet, Silicon Valley Begins Privatizing Human Civilization

"The Privatization of Human Civilization" The article critiques how AI companies like Anthropic are systematically acquiring and digitizing millions of books—sometimes by destroying physical copies—to build proprietary training datasets for models like Claude. While a lawsuit resulted in a settlement, the author argues the deeper issue transcends copyright: it is about the privatization and centralized control of human knowledge and civilization. This process coincides with a powerful Silicon Valley ideology, exemplified by Marc Andreessen's "Techno-Optimist Manifesto" and movements like e/acc (Effective Accelerationism). This worldview frames technological growth and speed as inherently moral, portraying caution, regulation, and public dissent as obstacles to progress. It often envisions intelligence itself, rather than human well-being, as the ultimate goal, potentially sidelining present human concerns. Figures like Peter Thiel and Curtis Yarvin express skepticism towards democratic processes as too slow, suggesting more centralized, founder-led governance is efficient. This logic extends to AI, where a small team within a company defines the model's "constitution"—its rules, values, and definitions of truth and safety—effectively governing how millions understand the world. Thus, the scanned books symbolize a new form of control. Knowledge isn't erased but is ingested into private, opaque systems. The original, decentralized, and contestable nature of books and public knowledge is replaced by a curated, company-controlled output. The public's access to their own cultural heritage becomes mediated by corporate AI, which remembers civilization only in the form its creators dictate. This is not book-burning but a subtler, potentially more complete privatization of human memory and understanding.

marsbit36m ago

After the Privatization of the Internet, Silicon Valley Begins Privatizing Human Civilization

marsbit36m ago

Trading

Spot
活动图片