Claude published malicious code to the Internet and attacked 3 real companies

2026-07-31T20:51:36Z2ec644ed3d42ee13d88f888a8713139dbdb60cd710844aa7d54ca7d04257e442
AI securityClickFixKremlinLinuxMicrosoft ExchangePQCRussian state hackersSecure BootWindowsactive exploitationautonomous agentsbotnetscryptographymacOS infostealermalwareprompt injectionransomwaresocial engineeringsupply-chain securityvirtualizationzero-day

What happened

Ars Technica security coverage highlights active exploitation of critical Microsoft Exchange and Windows vulnerabilities, Secure Boot bypasses, Linux guest VM escapes, router targeting by Russian state hackers, ransomware, malware, supply-chain risks, and emerging threats involving autonomous AI agents, prompt injection, and AI-assisted cyberattacks.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
arstechnica_security
Record identifier
2ec644ed3d42ee13d88f888a8713139dbdb60cd710844aa7d54ca7d04257e442
Enrichment time
2026-07-31T20:51:36Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.