# Anthropic flags Claude session-cookie replay by infostealers

_Wednesday, September 2, 2026 at 1:51 PM EDT · Security · Latest · Tier 2 — Notable_

![Anthropic flags Claude session-cookie replay by infostealers — Primary](https://images.ctfassets.net/jdtwqhzvc2n1/gpJLrplOBcznDK1gI5vbC/3dfca03f84beb69b1d77579ee0bd2ecc/image__1_.png?w=800&q=75)

Anthropic notified affected Claude users that infostealer malware had copied browser session cookies and attackers replayed them to use paid accounts, according to reporting on the notification. The company named six stealer families, signed affected accounts out, removed saved payment methods and refunded identified charges. The report says Anthropic did not disclose an account count or whether replayed sessions accessed connected apps or conversation history.

## Sources

- [VentureBeat](https://venturebeat.com/security/stolen-claude-session-cookies-can-reach-corporate-gmail-through-grants-no-it-admin-can-revoke)

---
Canonical: https://techandbusiness.org/newswire/vTSmlH78Ex2p7Kp1W3Ehcg
Retrieved: 2026-09-02T22:14:38.715Z
Publisher: Tech & Business (techandbusiness.org)
