[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"branding":3,"analytics":7,"article-anthropic-starts-auto-signing-out-claude-users-after-session-theft":10,"sections":44},{"siteName":4,"siteTagline":5,"publisherName":4,"contactEmail":6},"The Revision","Tech news, decoded.","editor@therevision.news",{"gaMeasurementId":8,"adsenseClientId":9},"G-ZW2MV82GYR","ca-pub-8533917693782264",{"article":11},{"id":12,"slug":13,"title":14,"dek":15,"body_md":16,"tags_json":17,"published_at":18,"created_at":19,"updated_at":20,"status":21,"review_note":22,"review_notes":23,"image_url":22,"persona_id":22,"persona_name":22,"section":34,"tags":35,"sources":39,"feedback":43,"feedback_at":22,"cost_usd":43,"total_tokens":43},6050,"anthropic-starts-auto-signing-out-claude-users-after-session-theft","Anthropic starts auto-signing out Claude users after session theft","Anthropic now force-logs Claude users out after malware apparently siphoned active login sessions from infected PCs.","Anthropic is now automatically signing Claude users out of sessions that infostealer malware appears to have stolen.\n\nThe company says infostealer malware apparently harvested active Claude login sessions directly from infected PCs, letting attackers reuse them without needing a password or two-factor code. In response, Anthropic has started force-logging out affected sessions rather than waiting for users to notice something is wrong. The move treats a stolen session token the same way a bank treats a stolen card number: kill it before it gets used. Anthropic has not detailed how many accounts were affected or how it detects a compromised session.\n\nSession-token theft has become one of the more boring but effective ways to break into accounts, since it skips the login screen entirely: no password to guess, no MFA prompt to bypass. Anthropic pushing an automatic kill switch acknowledges that user vigilance alone won't catch this kind of theft. For a company selling AI tools to businesses that increasingly hand it sensitive data, that's not just a security feature. It's table stakes.\n\nInfostealers have plagued browsers and cloud dashboards for years; Claude just joined the list of places they've been caught working.","[\"anthropic\",\"claude\",\"security\",\"malware\"]","2026-09-03T16:39:18.000Z","2026-09-03T16:53:40.801Z","2026-09-03T16:53:52.763Z","published",null,[24,30],{"id":25,"reviewer":26,"round":27,"reason":28,"status":29},"editor-r1","editor",1,"The source hedges the malware claim with 'apparently' (unconfirmed), but the draft states 'Infostealer malware had been harvesting active Claude login sessions' as settled fact — restore that hedging and drop unsourced elaborations like 'letting attackers step into an account without ever needing a password.'","resolved",{"id":31,"reviewer":26,"round":32,"reason":33,"status":29},"editor-r2",2,"Cut the meta-commentary clause 'according to the report - the hedge suggests the claim isn't fully confirmed' — it reads as a leftover editorial note explaining the hedge rather than actual reporting; just state the hedged claim plainly.","security",[36,37,34,38],"anthropic","claude","malware",[40],{"name":41,"url":42},"Engadget","https:\u002F\u002Fwww.engadget.com\u002F2250467\u002Fclaude-automatic-sign-out-hackers-explained\u002F",0,{"sections":45},[46,51,55,60,65,70,75,80,85,90,95,100,105,110],{"name":47,"slug":48,"count":49,"latest_published_at":50},"AI","ai",3385,"2026-09-04T22:17:36.000Z",{"name":52,"slug":34,"count":53,"latest_published_at":54},"Security",565,"2026-09-05T00:03:08.000Z",{"name":56,"slug":57,"count":58,"latest_published_at":59},"Policy","policy",300,"2026-09-04T22:18:34.000Z",{"name":61,"slug":62,"count":63,"latest_published_at":64},"Deals","deals",179,"2026-06-29T20:02:07.000Z",{"name":66,"slug":67,"count":68,"latest_published_at":69},"Hardware","hardware",152,"2026-09-03T09:26:48.000Z",{"name":71,"slug":72,"count":73,"latest_published_at":74},"Consumer Tech","consumer-tech",97,"2026-09-04T15:29:18.000Z",{"name":76,"slug":77,"count":78,"latest_published_at":79},"Science","science",96,"2026-09-03T22:30:00.000Z",{"name":81,"slug":82,"count":83,"latest_published_at":84},"Software","software",73,"2026-08-18T07:51:50.000Z",{"name":86,"slug":87,"count":88,"latest_published_at":89},"Dev Tools","dev-tools",69,"2026-08-18T04:00:00.000Z",{"name":91,"slug":92,"count":93,"latest_published_at":94},"Startups","startups",54,"2026-09-04T23:36:14.000Z",{"name":96,"slug":97,"count":98,"latest_published_at":99},"Gaming","gaming",41,"2026-07-09T04:00:00.000Z",{"name":101,"slug":102,"count":103,"latest_published_at":104},"General","general",37,"2026-09-04T20:22:41.000Z",{"name":106,"slug":107,"count":108,"latest_published_at":109},"Reviews","reviews",20,"2026-06-24T12:00:01.000Z",{"name":111,"slug":112,"count":113,"latest_published_at":114},"How-To","how-to",6,"2026-06-16T09:00:00.000Z"]