Fake Claude site installs malware that gives attackers access to your computer
We found a convincing fake site that installs a trojanized Claude app while quietly deploying PlugX malware.
Related Vulnerabilities
- CVE-2026-4157: ChargePoint Home Flex revssh Service Command Injection Remote Code Execution Vulnerability. This vul HIGH
- CVE-2026-35658: OpenClaw before 2026.3.2 contains a filesystem boundary bypass vulnerability in the image tool that MEDIUM
- CVE-2026-3689: OpenClaw Canvas Path Traversal Information Disclosure Vulnerability. This vulnerability allows remot MEDIUM
- CVE-2026-35666: OpenClaw before 2026.3.22 contains an allowlist bypass vulnerability in system.run approvals that fa HIGH
- CVE-2026-4432: The YITH WooCommerce Wishlist WordPress plugin before 4.13.0 does not properly validate wishlist own HIGH
Related Coverage
Threat Actors