216.73.216.6

Threat Actors Abuse claude.ai Shared Chat for ClickFix Malvertising Campaign

· Published 18/06/2026 12:09

Export JSON

Essential information

Published
18/06/2026 12:09
Modified
Source / Author
AlienVault
Confidence
100/100
Report type(s)
threat-report
Labels / Tags
ai impersonation apac targeting clickfix gitlab pages abuse google ads abuse macsync macsync infostealer malvertising social engineering
Related entities
21 indicators, 21 observables, 19 techniques (mitre), 1 malware

Description

Cybercriminals orchestrated a sophisticated operation leveraging Google Ads to impersonate popular AI developer tools including Claude AI, ChatGPT Codex, Perplexity, Cursor IDE, and JetBrains. Over seven weeks spanning April to June 2026, attackers deployed 106 unique malicious hostnames across six distinct waves, initially hosting pages on GitLab infrastructure before pivoting to weaponize claude.ai's legitimate shared chat feature. The campaign targeted technically proficient users searching for AI development tools, tricking them into executing terminal commands that deployed the infostealer. This credential-harvesting malware collected browser data, SSH keys, and cryptocurrency wallets. The Asia-Pacific region sustained the heaviest impact with 67.2% of over 2,000 victims, particularly concentrated in Taiwan. Anthropic responded by banning malicious accounts and implementing additional abuse mitigations.

External references