Stolen Claude session cookies can reach corporate Gmail through grants no IT admin can revoke
Infostealers replayed stolen Claude session cookies into paid accounts without ever touching the login page two-factor authentication guards. The accounts Anthropic flagged were card-billed, self-serve accounts, which is the population no corporate identity provider governs, and…
Infostealers replayed stolen Claude session cookies into paid accounts without ever touching the login page two-factor authentication guards. The accounts Anthropic flagged were card-billed, self-serve accounts, which is the population no corporate identity provider governs, and…
BELLINGS Intelligence Score: 35
Why it matters
The theft and replay of AI session cookies to access corporate Gmail without admin revocation is a notable cybersecurity vulnerability with potential broad implications for corporate security and identity management, but it is not yet systemic or market-moving on its own.
Sources
VentureBeat
Stolen Claude session cookies can reach corporate Gmail through grants no IT admin can revoke
Infostealers replayed stolen Claude session cookies into paid accounts without ever touching the login page two-factor authentication guards. The accounts Anthropic flagged were card-billed, self-serve accounts, which is the population no corporate identity provider governs, and…