Anthropic accidentally leaks Claude Code

2026-04-01T02:51:43Ze01fc2300c1bcac6020395b6e5bbc1187364f60a18ca4bda638e86f5156421a4
APTChina-linkedCitrixFortinetQilinRATbanking-incidentdata-breachdata-leakknown-exploited-vulnerabilitiesmacOS-infostealernpmnpm-malwareransomwaresource-code-leaksupply-chain-attacktelegram-zero-daytreasury-outage

What happened

A batch of high‑impact security incidents was reported, spanning source‑code exposure, npm supply‑chain compromises, large customer data exposure, and actively exploited critical vulnerabilities. Anthropic accidentally published a large Claude Code debug file via npm, while attackers hijacked the Axios npm account to push RATs across Windows, macOS, and Linux. Lloyds Banking Group exposed transaction data for ~450,000 mobile customers after a faulty update, and the Dutch Ministry of Finance took treasury systems offline following a cyber incident. CISA added Citrix NetScaler CVE-2026-3055 (CVS

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityaffairs
Record identifier
e01fc2300c1bcac6020395b6e5bbc1187364f60a18ca4bda638e86f5156421a4
Enrichment time
2026-04-01T02:51:43Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Anthropic accidentally leaks Claude Code · Baitaphish