Automatically translated.View original post

Claude Code's Source Code stream island hackers

Hackers perched Claude Code's loose Source Code stream to release Vidar malware instead.

This year's big news will not escape the source code of artificial intelligence or AI (Claude Code). With the negligence of employees within Anthropic itself, many aspiring people and companies are trying to acquire this source code worth tens of billions of baht. And that has also allowed hackers to take advantage of this trend.

According to a report by the Android website, Headline mentioned that hackers have taken advantage of the current, implemented the Repo or Repository. Github released Vidar malware and GhostSocks, claiming that what was uploaded was a special AI tool, an unlocked version of the original code and an Enterprise version of the Claude Code. Within Repo, what the victim downloaded would be a 7-Zip compressed file that, if unlocked, would be a file named ClaudeCode _ x64.exe, but instead of the best AI tool, the statement turned out to be malware 2. As mentioned above, these two malware are different types of malware that have different functions:

Vidar Stealer is a malware type that steals data from the victim's machine or Infostealer with the ability to steal passwords, cookies files, and Cryptokerrency wallet data.

GhostSocks are used to turn the victim's machine into a Proxy so that hackers can send various malware through the victim's IP number.

So if any reader who searches on the search engine with the word "leaked Claude Code" and encounters such an impersonation, be aware that it is definitely not a real application and avoid downloading for system security.

# Trending # Lemon 8 Howtoo # lemon 8 diary # Claude # freedomhack

4/23 Edited to

... Read moreจากประสบการณ์ส่วนตัวเมื่อเร็ว ๆ นี้ ผมได้เห็นข่าวเกี่ยวกับการหลุดของ Source Code ของ Claude Code ซึ่งเป็น AI เขียนโค้ด ที่ถือว่ามีมูลค่าสูงมาก และตามมาด้วยภัยอันตรายจากแฮกเกอร์ที่ใช้ช่องทางนี้โจมตีด้วยมัลแวร์ Vidar และ GhostSocks ผ่านการปล่อยไฟล์ปลอมใน Github repository พวกแฮกเกอร์ส่วนใหญ่มักจะอาศัยโอกาสจากกระแสข่าวดัง เพื่อสร้างความน่าเชื่อถือในการหลอกลวงผู้ใช้ดาวน์โหลดมัลแวร์ไปติดตั้งโดยไม่รู้ตัว จากที่เห็น ไฟล์ปลอมจะมาในรูปแบบไฟล์บีบอัด 7-Zip ที่เมื่อติดตั้งแล้วจะเป็นมัลแวร์ที่ขโมยข้อมูลอย่างรหัสผ่าน คุกกี้ และแม้แต่ข้อมูลกระเป๋าสตางค์คริปโต รวมถึงเปลี่ยนเครื่องผู้ใช้ให้เป็น proxy กลางที่แฮกเกอร์ใช้กระจายมัลแวร์ได้ง่ายขึ้น สิ่งที่ผมขอแนะนำเลยคือ อย่าคลิกลิงก์หรือดาวน์โหลดไฟล์ใด ๆ ที่อ้างว่าเป็น Source Code ของ Claude Code จากแหล่งที่ไม่น่าเชื่อถือ โดยเฉพาะจากคลังดิจิทัลออนไลน์อย่าง Github ที่มีการโพสต์ไฟล์โดยไม่มีการตรวจสอบอย่างเข้มงวด เพราะมันอาจกลายเป็นภัยคุกคามต่อความปลอดภัยข้อมูลส่วนตัวของเราได้ง่ายมาก นอกจากนี้ ผมแนะนำให้ใช้มาตรการป้องกันความปลอดภัยฐานราก เช่นการติดตั้งแอนตี้มัลแวร์ที่มีการอัปเดตล่าสุด ใช้รหัสผ่านที่แตกต่างและรัดกุม รวมถึงเปิดใช้งานการยืนยันตัวตนแบบสองขั้นตอนในทุกบริการที่เราสามารถทำได้ เพื่อให้ลดความเสี่ยงในการถูกแฮกข้อมูลส่วนบุคคล ในโลกยุค AI ที่ทุกอย่างเชื่อมต่อกัน ความระมัดระวังและความรู้พื้นฐานเกี่ยวกับภัยคุกคามไซเบอร์จึงเป็นสิ่งจำเป็น เพื่อไม่ให้ตกเป็นเหยื่อของกลลวงและมัลแวร์ที่แฝงมากับชื่อเสียงของเทคโนโลยีใหม่ ๆ ที่กำลังได้รับความนิยม