Malicious Claude Artifact Ranks on Google, Distributing macOS Stealer via Fake Install
PressureGullible547 · reddit · 2026-08-20
A user searching for "Claude Code install" clicked a top Google result hosted on an official Anthropic domain (a malicious published artifact). Executing the provided curl ... | bash script, which looked legitimate, actually installed a macOS infostealer with persistent launch agents. The user had to wipe the disk after realizing the breach. This serves as a warning to verify sources before running installation scripts.
More from Safety
- Sam Altman on the AI dilemma: trade-offs between loss of control and power centralization — r0ck3t23 · 2026-08-24
- Debate erupts over lethal military robots vs. failing civilian units — teortaxesTex · 2026-08-24
- Only 1 of 20 Potential Presidential Candidates Answered AI Pause Query — DavidSKrueger · 2026-08-24
- Chinese Transforming Robot Dog Sparks US Trade Policy Criticism — TinfoilTricorn · 2026-08-24
- Turkey blocks at least 12 Grok posts on national security grounds — Unusual_Variation293 · 2026-08-24
- Nature Comment: Provenance, not interpretability, grounds trust in autonomous science — gabepgomes · 2026-08-24