Poison Claude Sells Discounted Claude Access While Its Operator Sees Every Customer Prompt

A Shadowy Market Emerges, Selling Sensitive Customer Data and Opening Up Entire Networks to Attack

In a disturbing revelation, it’s been discovered that sensitive customer data from a popular online platform called Claude is being sold on dark web marketplaces at discounted prices. What’s even more alarming is that the operator behind this illicit trade claims to have direct access to every single one of these customers’ accounts, effectively turning them into sitting ducks for hackers.

The data in question appears to be linked to Claude’s identity exposure vulnerability, which has been known to create an entry point for attackers to escalate privileges across domains. This allows malicious actors to jump from one system or application to another within a network, potentially reaching sensitive areas that would otherwise be off-limits. The hacker market is now offering this valuable information at reduced prices, making it easier for even novice attackers to breach these systems.

Claude’s business model relies on its users trusting the platform with their personal and financial data. However, once an identity exposure vulnerability is exploited, an attacker can gain access not just to individual accounts but potentially to entire networks of connected devices. This can have devastating consequences, including financial loss, reputational damage, and compromised sensitive information.

The operator of this illicit market is known for boasting about its capabilities in exploiting vulnerabilities such as the one affecting Claude. They claim that their ability to access any customer’s account at will makes them a “god mode” in the world of cyber attacks. This is not an exaggeration – with direct access to customers’ accounts, attackers can execute any number of malicious activities, from draining bank accounts to installing malware on devices.

The fact that sensitive data is being sold so cheaply raises red flags about Claude’s security measures and its ability to protect customer information. It also highlights the importance of vigilant cybersecurity practices among users – even those who believe they’re protected by robust platforms like Claude can fall prey to these kinds of vulnerabilities if not actively monitoring their accounts.

So what can you do to stay safe in this environment? First, review your online presence and make sure no sensitive data is exposed. Second, monitor your bank statements regularly for any suspicious activity. And lastly, be cautious when using public Wi-Fi or accessing unfamiliar networks – use a VPN whenever possible to ensure your connection remains secure.


Source: The Hacker News — 2026-08-05