Summary
Infostealers are replaying stolen Claude AI session cookies to access paid accounts, bypassing two-factor authentication and SSO, as revealed by Anthropic. This attack primarily affects self-serve accounts not governed by corporate identity providers, with Anthropic notifying affected users, signing out sessions, and refunding charges.