The exposure traces back to version 2.1.88 of the @anthropic-ai/claude-code package on npm, which was published with a 59.8MB ...
Attackers stole a long-lived npm token from the lead axios maintainer and published two poisoned versions that drop a ...
Anthropic says it accidentally leaked the source code for Claude Code, which is closed source, but the company says no ...
Anthropic is scrambling to contain the leak, but the AI coding agent is spreading far and wide and being picked apart.