Anthropic's Fever Dream: Claude's package that stole real keys
aikido.dev | blog | #ai-security | #supply-chain | #agentic-ai | #malware | #credential-theft | #pypi | #ai-agents | #claude | #anthropic
Summary
Aikido investigates the malicious PyPI package behind Anthropic's disclosed agent incident, spotlighting an 'anthropickit' candidate and the supply-chain risks of AI agents shipping real malware.
- Published
- Collected
Skip to content