Cybersecurity Alert: Vidar Malware Exploits Source Code Leak on GitHub
A recent leak of the Claude Code source code has opened the door for cybercriminals to distribute Vidar information-stealing malware through fake GitHub repositories. The leak, which occurred on March 31, 2023, exposed 513,000 lines of code from Anthropic’s AI tool, attracting significant attention.
Threat actors are luring unsuspecting users with enticing offers of “unlocked enterprise features” on fraudulent repositories. One such repository, operated by a user named “idbzoomh,” has been optimized to appear prominently in search results for “leaked Claude Code.” Users who download the archives unwittingly install the Vidar malware, which can steal sensitive information.
This attack primarily affects developers and researchers seeking the leaked code. To protect against such threats, always verify sources before downloading files and maintain updated antivirus software.
Risk Level: High
Source: View Original Report
