One-click Claude Desktop Flaw Could Enable Hidden Prompt Injection And Code Execution
Security researchers at Oasis Security have disclosed a vulnerability in Claude Desktop that could allow attackers to execute hidden prompts, access local files, exfiltrate conversation history, or execute code with a single click on a malicious link.
The vulnerability, dubbed PromptFiction, affects the way Claude Desktop handled claude:// links.
According to the researchers, clicking one of these links caused the application to automatically open, import a prompt from the URL, and immediately submit it without displaying the full prompt or requiring user approval. Anthropic addressed the issue in Claude Desktop version 1.1.2321.
Hidden instructions
Oasis Security demonstrated the attack using what appeared to be an innocuous ASCII art tool.
The visible portion of the prompt looked legitimate, while hidden instructions embedded in the same link were silently processed by Claude Desktop after the user clicked it.
According to the report, the same technique could be used to “plant a hidden...
Copyright of this story solely belongs to informationsecuritybuzz.com. To see the full text click HERE