← Back to Feed
Claude Code Packaging Error Remains a Lure in an Active Campaign: What Defenders Should Do
April 7, 2026 · Trend Micro · Severity: MEDIUM
Threat actors leveraged Anthropic’s Claude Code npm release packaging error to distribute Vidar, GhostSocks, and PureLog Stealer. This blog details immediate steps organizations can take and best practices to prevent further risk.
Key Takeaways
- Threat actors leveraged Anthropic's Claude Code npm release packaging error to distribute Vidar, GhostSocks, and PureLog Stealer malware.
- Trend Micro's blog details immediate steps organizations can take and best practices to prevent further risk from the active campaign.
- Defenders should audit npm supply chains and verify package authenticity after the Claude Code packaging error was weaponized.