Infostealers کوکیهای جلسه کلود را مستقیما پس از 2FA پخش کردند. حسابهایی که شواهد به آنها اشاره میکنند، اشتراکهای شخصی خارج از SSO شما هستند
Infostealers کوکیهای جلسه کلود دزدیده شده را بدون دست زدن به محافظهای احراز هویت دو مرحلهای صفحه ورود مجددا در حسابهای پولی پخش کردند. حسابهایی که Anthropic پرچمگذاری کردهاند، حسابهایی با صورتحساب کارتی و خودسرویس بودند، که جمعیتی است که هیچ ارائهدهنده هویت شرکتی بر آن حاکم نیست، و هیچ کنسول مدیریتی نمیتواند از سیستم خارج شود. پخش مجدد Session-Cookie SSO را به همان اندازه که 2FA را دور می زند، دور می زند. آنچه SSO در اینجا ارائه می دهد لغو است…
خواندن متن کامل در ونچربیتبه زبان اصلی، در سایت ناشر باز میشودمتن اصلی (انگلیسی)
Infostealers replayed Claude session cookies straight past 2FA. The accounts the evidence points to are personal subscriptions outside your SSO
Infostealers replayed stolen Claude session cookies into paid accounts without ever touching the login page two-factor authentication guards. The accounts Anthropic flagged were card-billed, self-serve accounts, which is the population no corporate identity provider governs, and no admin console can sign out. Session-cookie replay bypasses SSO as thoroughly as it bypasses 2FA. What SSO provides here is revocation…