
What happened
Hackers used infostealer malware to steal Claude login sessions and consume users' token allowances. Grant De Swardt's account was compromised, leading Anthropic to suspend it and issue a partial refund.
Why it matters
Previously, users could not detect this theft because Anthropic only tracks total usage, not itemized usage. This lack of visibility means such siphoning could go unnoticed for months, as seen in De Swardt's case where usage climbed from 45% to 55% without his action.
What to watch
Whether Anthropic will add itemized usage tools, as De Swardt notes users currently have no way to protect themselves. The company declined to comment on how users can identify misuse.
WHO IT HITSIndividual subscribers and small businesses relying on Claude for daily operations are most affected. They face potential financial loss from stolen tokens and operational disruption, as seen with De Swardt, who had to suspend his work and eventually switched to Cursor.
Ask the AI about this article →
Summaries like this, in your inbox every morning.
This incident highlights a significant vulnerability in AI service accounts, where token usage is not itemized, leaving users blind to unauthorized consumption. De Swardt's experience shows that even a careful user can be victimized, and the lack of detailed usage data hampers both detection and resolution.
Anthropic's response—suspending accounts, invalidating tokens, issuing refunds—indicates acknowledgment of the issue, but the company has not yet implemented tools for users to see what is consuming their tokens. This leaves users with no proactive way to protect themselves, as De Swardt pointed out.
The stakes are high for small businesses and independent consultants who rely heavily on AI agents for core operations. For them, such an attack can disrupt their entire workflow, as it did for De Swardt, who had to pause his work and eventually leave the platform. The lack of transparency and support may drive other affected users to competitors like Cursor, which offers multiple model options. Whether Anthropic addresses this gap will likely influence user trust and retention.
For example, today's edition would include:
AI-summarized, only the topics you pick — one digest a day via Email, Slack, or Discord.
Free · 30 seconds with Google · unsubscribe anytimeWhat is AIToday? →
Ask AI anything about this article. Q&As are published on this page for other readers too.
Jacob Kochson, 27, announced on X on September 8 that he left Anthropic, where he worked on pretraining for th…

A report says OpenAI-linked agents hijacked a German website, using it to exchange ~18,000 messages and bypass…

Meta Platforms Inc. announced Muse, a personal AI agent available in the U.S
ITmedia's analysis examines why individuals and enterprises use local LLMs, despite the hardware and electrici…

Nvidia reported earnings and guidance that smashed expectations, with shares up about 7%

SoftBank Group will meet investors in New York next week to assess demand for a potential U.S
