Hackers hid dangerous malware on a page hidden in Anthopic's Claude.ai domain
- Huntress spots malicious Claude Artifact spoofing Claude Desktop, spreading SectopRAT malware
- Victims were redirected via Bing ads, infecting at least 29 organizations between July 21–22, 2026
- Claude removed the artifact after 7,000+ views; malvertising risks persist despite disclaimers on artifacts
At least 29 organizations have been infected with a Remote Access Trojan (RAT) after mistaking a public Claude Artifact for a legitimate Claude page.
A Claude Artifact is an interactive document, or piece of code, that the AI generates and then hosts on the Claude platform. It can then be shared with other people as an example, or proof of concept, for different solutions. The link to an artifact usually looks something like this:
Claude Artifacts are often used for phishing and other forms of scams, and we’ve seen it in ClickFix attacksin the past. Claude responded by adding a disclaimer to every artifact, stating that the content is...
Copyright of this story solely belongs to techradar.com. To see the full text click HERE