They thought they were downloading Claude Code source. They got a nasty dose of malware instead
go.theregister.com Apr 3, 2026

They thought they were downloading Claude Code source. They got a nasty dose of malware instead

AI-summarised brief · reviewed before publication

Tens of thousands downloaded leaked Claude Code source code, but some got malware instead, including Vidar stealer and GhostSocks. A malicious GitHub repository used the leak as a lure, tricking users into downloading malware that steals credentials and proxies network traffic. Researchers discovered the repo, which had gained 793 forks and 564 stars, and warned of similar malware campaigns using buzzy products for online scams.