AIventurebeat.com·8d ago

Stolen Claude session cookies can reach corporate Gmail through grants no IT admin can revoke

Submitted by @

Infostealers replayed stolen Claude session cookies into paid accounts without ever touching the login page two-factor authentication guards. The accounts Anthropic flagged were card-billed, self-serve accounts, which is the population no corporate identity provider governs, and no admin console can sign out. Session-cookie replay bypasses SSO as thoroughly as it bypasses 2FA. What SSO provides here is revocation and visibility, not prevention. The company disclosed the campaign in notification

ORIGINAL REPORTING
VentureBeat
Published 8d ago ago · louiswcolumbus@gmail.com (Louis Columbus)
Read full story at VentureBeat

Original reporting by VentureBeat · louiswcolumbus@gmail.com (Louis Columbus). GridIndex is an aggregation and intelligence layer — full credit to the original publisher.

CONTINUE READING

This page summarizes and tracks coverage of this developing story.

Read full story at VentureBeat
0 views 0 upvotes 0 comments 0 shares

Discussion · 0

Sign in to join the discussion.