cd /news/ai-safety/how-attackers-hosted-a-fake-claude-d… · home topics ai-safety article
[ARTICLE · art-70188] src=helpnetsecurity.com ↗ pub= topic=ai-safety verified=true sentiment=↓ negative

How attackers hosted a fake Claude download page on the claude.ai domain

Attackers abused Anthropic's Claude Artifacts feature to host a fake download page on the genuine claude.ai domain, leading to malware infections. Huntress researchers disclosed that employees at at least 29 organizations were compromised over two days in July after clicking a sponsored Bing ad that redirected them to a spoofed site serving SectopRAT.

read1 min views1 publishedJul 23, 2026

A threat actor abused Anthropic’s Claude Artifacts feature to funnel users toward malware, Huntress researchers have disclosed. Employees at at least 29 organizations were compromised over two days in July, after searching for the Claude desktop app and clicking a sponsored Bing ad. The ad pointed to the genuine claude.ai domain, but landed on an attacker-published public artifact, which redirected them to a spoofed download site serving SectopRAT. What are Claude Artifacts? Artifacts are a … More

The post How attackers hosted a fake Claude download page on the claude.ai domain appeared first on Help Net Security.

── more in #ai-safety 4 stories · sorted by recency
── more on @anthropic 3 stories trending now
sponsored brought to you by zahid.host 4,200+ EU-deployed projects
reading about agents? ship yours in a single git push.

Run your AI side-project on zahid.host

EU-based hosting, git-push deploys, automatic HTTPS, no cold starts. Free tier with a custom domain — perfect for shipping the agent you just read about.

$git push zahid main
Live at https://your-agent.zahid.host
Get free account → Pricing
from €0/mo · no card required
LIVE [news/how-attackers-hosted…] indexed:0 read:1min 2026-07-23 ·