TechCrunch·3 min read·medium

Hackers are stealing Claude tokens from subscribers

J
Julie Bort
Hackers are stealing Claude tokens from subscribers
AI Summary

An independent AI consultant discovered that his Claude account was being drained of tokens by unauthorized third-party services. Anthropic confirmed the account was compromised via a session key, highlighting security risks for users relying on AI agents for business automation.

Why it matters

As businesses increasingly integrate AI agents into their workflows, session security and token theft represent emerging cybersecurity threats for professional users.

Dive DeeperCreate a free account to unlock

On August 4, Grant de Swardt, an independent AI consultant in East Sussex, UK, noticed something strange going on with his Claude Max 20x account. He hadn’t been working that day, yet his token usage was climbing.

The next day, he disabled everything he had attached to Claude and did not work with it. Token consumption again increased. “In the clearest controlled interval, it increased from 45% to 55% while I performed no work, scheduled Cowork tasks were paused or completed, Dispatch/cloud execution was disabled, and there was no corresponding active local Claude Code task,” de Swardt told TechCrunch.

Continue reading on Headlinne

Create a free account to read the full article.

Read full article →
technologybusiness

Get smarter about the news

Sign up free for a feed built around what you actually care about, Dive Deeper research on any story, and the full text of every article.

Create free account

Already have an account? Sign in