cd /news/ai-tools/anthropics-claude-code-leak-exposes-… · home topics ai-tools article
[ARTICLE · art-75845] src=cryptobriefing.com ↗ pub= topic=ai-tools verified=true sentiment=↓ negative

Anthropic’s Claude code leak exposes 513,000 lines of source code, sparks malware campaigns

A packaging error in Anthropic's Claude Code CLI tool version 2.1.88 leaked 513,000 lines of TypeScript source code across 1,906 internal files via npm on March 31, triggering malware campaigns on fake GitHub repositories. Anthropic confirmed the leak was a human error and not a security breach, but its DMCA takedown requests disrupted roughly 8,100 GitHub repositories, including unrelated projects.

read2 min views1 publishedJul 27, 2026
Anthropic’s Claude code leak exposes 513,000 lines of source code, sparks malware campaigns
Image: Cryptobriefing (auto-discovered)

Via cnet.com

A packaging error in Claude Code's CLI tool revealed nearly 2,000 internal files, and the fallout is still unfolding.

A single missing configuration in a release pipeline turned Anthropic’s Claude Code into an open book. On March 31, version 2.1.88 of the Claude Code CLI tool shipped via npm with a 59.8 MB source map file that was never supposed to leave the building, exposing approximately 513,000 lines of unobfuscated TypeScript source code across 1,906 internal files.

Within hours, the code was mirrored to GitHub. Forks multiplied. And opportunistic actors spun up fake repositories laced with malware, targeting developers who came looking for the leaked source. Anthropic’s attempt at damage control, filing DMCA takedown requests, ended up disrupting roughly 8,100 GitHub repositories, many of which had nothing to do with the incident.

What actually happened #

The exposure wasn’t a hack. Source map files are debugging tools that map compiled code back to its original source. They’re useful during development. They’re catastrophic when shipped to production.

Anthropic confirmed as much in its response, stating that the mishap was “a release packaging issue caused by human error, not a security breach.” The company emphasized that no sensitive customer data or credentials were compromised in the exposure.

The 11,241 messages referenced in early discussions around the incident appear to be connected to this broader software exposure. While some reports initially suggested user chat messages were leaked, Anthropic has pushed back on that characterization, noting that the figure is not substantiated by concrete evidence of customer conversation exposure. The number may instead reflect artifacts within the leaked codebase itself.

The DMCA mess made it worse #

Anthropic’s DMCA response created its own secondary disaster. The roughly 8,100 repositories disrupted by takedown requests included projects with no connection to the leaked code.

The malware angle adds a more sinister dimension. Bad actors quickly created fake GitHub repositories mimicking the leaked Claude Code source, hoping developers would clone them without scrutiny.

Why crypto developers should care #

The malware campaigns are the most immediate concern. Crypto developers who cloned what they thought was legitimate Claude Code source from GitHub may have introduced compromised dependencies into their own projects.

Anthropic also has direct historical ties to the crypto sector. The company received funding from FTX in 2022. The follow-on issues haven’t helped either. Reports of quality degradation in Claude Code responses surfaced in April 2026, and rumors about unreleased models like “Claude Mythos” have added noise to an already chaotic situation.

Crypto builders using AI-powered development tools should audit their dependency chains immediately, verify the provenance of any recently cloned repositories, and watch for indicators of compromise in their build environments.

Disclosure: This article was edited by Editorial Team. For more information on how we create and review content, see our

Editorial Policy.

── more in #ai-tools 4 stories · sorted by recency
── more on @anthropic 3 stories trending now
sponsored brought to you by zahid.host 4,200+ EU-deployed projects
reading about agents? ship yours in a single git push.

Run your AI side-project on zahid.host

EU-based hosting, git-push deploys, automatic HTTPS, no cold starts. Free tier with a custom domain — perfect for shipping the agent you just read about.

$git push zahid main
Live at https://your-agent.zahid.host
Get free account → Pricing
from €0/mo · no card required
LIVE [news/anthropics-claude-co…] indexed:0 read:2min 2026-07-27 ·