Threat actors are exploiting the recent Claude Code source code leak by using fake GitHub repositories to deliver Vidar ...
Attackers stole a long-lived npm token from the lead axios maintainer and published two poisoned versions that drop a ...
'This is unironically a malware nuclear missile.' ...
The leak provides competitors—from established giants to nimble rivals like Cursor—a literal blueprint for how to build a ...
Anthropic is scrambling to contain the leak, but the AI coding agent is spreading far and wide and being picked apart.
On March 31, 2026, the popular HTTP client Axios experienced a supply chain attack, causing two newly published npm packages ...
The key is that researchers can see how Claude Code is meant to work but cannot recreate it because the leak does not include ...
A supply-chain attack backdoored versions of Axios, a popular JavaScript library that's present in many different software ...
A missed step in a manual deployment process exposed the internal workings of one of AI's hottest coding tools—and briefly ...
IntroductionOn March 31, 2026, Anthropic accidentally exposed the full source code of Claude Code (its flagship ...
Security firm Socket advised developers to check dependencies for affected Axios versions and remove or roll back compromised ...
Anthropic's accidental leak has exposed Claude AI's internal code, revealing several unreleased features like Buddy, KAIROS ...