Microsoft Discloses Claude Code Vulnerability Allowing Credential Theft
Microsoft researchers disclosed a vulnerability in Anthropic's Claude Code GitHub Action that allowed attackers to expose credentials through prompt injection attacks, with Anthropic patching the flaw on May 5. Microsoft disclosed the issue through HackerOne on April 29 and
OliverGrant·06-07 18:17