A malicious GitHub repository impersonating Anthropic and offering a fake "Claude Opus 5" application delivers the RevStealer information-stealing malware via social engineering. The malware is designed to quietly exfiltrate passwords, cryptocurrency wallet data, and login credentials from Windows systems. The campaign relies on users being tricked into downloading and executing the malicious payload from the fraudulent repository.
A malicious GitHub repository impersonating Anthropic and claiming to offer free access to “Claude Opus 5” is delivering RevStealer, Windows information-stealing malware that targets passwords, cryptocurrency wallet data and login credentials, according to Morphisec. Repository README using Claude Opus 5 branding and a “Free” hook (Source: Morphisec) “RevStealer is a Windows information stealer that is built to work quietly,” researchers explained. The campaign relies on social engineering, with victims steered to GitHub repositories that look … More → The post Fake Claude Opus 5 app delivers malware and wipes its own tracks appeared first on Help Net Security .