User hacked via link from Claude chat, poisoned SKILL.md found in backup
skdh · x · 2026-08-29
User @Numalunah shared a real hacking story: they asked Claude in chat for a transcription app, and the download link Claude provided pointed to a copycat site bundling malware. Pasting the command into the terminal executed it instantly.
The scarier part came during backup restoration: a poisoned SKILL.md for Claude Code was hidden in the backup, looking exactly like the user's own writing style guide but containing instructions to silently re-download the malware and steal credentials every time the AI loaded it. Restoring that single file would have compromised the fresh laptop on day one. What saved the user: reading every skill, hook, and config file before letting the AI touch them. Lessons: AI assistants hand you links they never verified, and AI config files must be audited manually.
More from coding & agent
- Build Custom Obsidian Plugins Without Code Using AI Toolkit — evielync · 2026-08-29
- Built an FPS Game with Tencent Hunyuan Hy4, Testing Long-Horizon Coding Loops — techNmak · 2026-08-29
- Managing AI Agents: What to Ask When You Don't Know the Domain — dejavucoder · 2026-08-29
- Open Source Tool: Monitor Codex/Claude Usage via Mac Menu Bar — ojasvi_yadav · 2026-08-29
- Complete Field Guide: Installing AutoGPT from Source (2026) — Ok_pettech · 2026-08-29
- PILOT: New Framework Lets Long-Running Agents Self-Improve — badumtsssst · 2026-08-29