Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Sri Lanka’s USD 2.5 Million Cyber Fraud: Investigations Underway as Questions Emerge Over Payment Process

    April 23, 2026

    Dialog Enterprise Partners with Star Garments: Pioneering 5G Innovation in Sri Lanka’s Apparel Industry

    April 23, 2026

    99x Shares Key Insights at SLASSCOM Women in Tech Conference 4.0

    April 22, 2026
    Facebook X (Twitter) LinkedIn
    Trending
    • Sri Lanka’s USD 2.5 Million Cyber Fraud: Investigations Underway as Questions Emerge Over Payment Process
    • Dialog Enterprise Partners with Star Garments: Pioneering 5G Innovation in Sri Lanka’s Apparel Industry
    • 99x Shares Key Insights at SLASSCOM Women in Tech Conference 4.0
    • VentureTECH invests in Sri Lankan-founded cybersecurity company DeltaSpike to strengthen regional security operations
    • Motadata Empowers British School of Colombo with Intelligent, Proactive IT Operations
    • Kaspersky finds 26 fake crypto wallet apps on Apple’s App Store that can drain digital assets
    • Fintech Forum drives behavioural shift to a digital payment nation
    • TikTok releases Q4 2025 Community Guidelines Enforcement Report
    Facebook X (Twitter) LinkedIn
    Techie.LKTechie.LK
    Demo
    • Home
    • Local
      1. AI & Machine Learning
      2. Consumer Tech
      3. Cybersecurity
      4. Enterprise Tech
      5. Fintech & Digital Payments
      6. GovTech & e-Governance
      7. Legal & Regulatory Tech
      8. Science & Innovation
      9. Startups & Venture
      10. Telecom & Connectivity
      Featured

      Sri Lanka’s USD 2.5 Million Cyber Fraud: Investigations Underway as Questions Emerge Over Payment Process

      By Techie.lkApril 23, 20263
      Recent

      Sri Lanka’s USD 2.5 Million Cyber Fraud: Investigations Underway as Questions Emerge Over Payment Process

      April 23, 2026

      Dialog Enterprise Partners with Star Garments: Pioneering 5G Innovation in Sri Lanka’s Apparel Industry

      April 23, 2026

      99x Shares Key Insights at SLASSCOM Women in Tech Conference 4.0

      April 22, 2026
    • International
      • AI & Machine Learning
      • Consumer Tech
      • Cybersecurity
      • Enterprise Tech
      • Fintech & Digital Payments
      • GovTech & e-Governance
      • Legal & Regulatory Tech
      • Science & Innovation
      • Startups & Venture
      • Telecom & Connectivity
    • Interviews
    • Profiles
    • Analysis
    • Contributors
    • Podcasts
    • More
      • About Us
      • Contact Us
    Techie.LKTechie.LK
    Home»International»Cybersecurity»Kaspersky discovers infostealers mimicking Claude Code, OpenClaw and other AI developer tools
    Cybersecurity

    Kaspersky discovers infostealers mimicking Claude Code, OpenClaw and other AI developer tools

    Techie.lkBy Techie.lkMarch 11, 2026Updated:April 23, 2026No Comments0 Views
    Facebook Twitter LinkedIn WhatsApp Reddit Tumblr Email
    Share
    Facebook Twitter LinkedIn

    On March 2026, Kaspersky Threat Research has identified a new malicious campaign targeted at developers looking for installation instructions for Claude Code, a development agent created by Anthropic. When searching for “Claude Code download”, sponsored advertisements appear at the top of the search results. One of these ads redirects users to a malicious webpage that closely imitates the official installation documentation for Claude Code. As a result, users are tricked into installing malware which harvests sensitive information including credentials, crypto wallet data, browser sessions, and other confidential files. Similar malicious campaigns mimic other popular AI tools, including OpenClaw.
    The fake documentation page is visually identical to the legitimate one and is hosted on the website-building and hosting platform Squarespace. Because the page precisely copies the original instructions, users may not notice the difference when copying and executing installation commands.

    However, instead of installing the developer tool, the commands deliver malware to the victim’s system. Depending on the operating system, the malicious commands deploy different infostealers: Windows systems receive Amatera, an information-stealing malware that collects data from user directories,  web browsers, and cryptocurrency wallets before sending the stolen information to a remote server.

     

    Amatera has previously been observed in campaigns using the ClickFix distribution technique and is operated under a Malware-as-a-Service (MaaS) model. macOS systems receive AMOS, another infostealer previously documented in several malware campaigns targeting Apple devices. It has been described by Kaspersky before.

    Kaspersky researchers also identified similar malicious campaigns targeting other popular AI tools, including OpenClaw and Doubao. Using the same approach, attackers registered multiple domains and distributed files containing the Amatera infostealer while disguising them as legitimate downloads for these tools.

    “The campaign poses significant risks because AI  development tools such as Claude Code and OpenClaw are widely used not only by hobbyists and automation enthusiasts but also by professional developers working in large organizations. If infected, victims may unknowingly expose source code from active projects, confidential corporate data, authentication credentials, and private accounts. This makes such campaigns particularly dangerous for businesses whose developers rely on AI-assisted coding tools,” comments Vladimir Gursky, cybersecurity expert at Kaspersky.

     

    In December 2025 Kaspersky detected that attackers spread a macOS infostealer using Google Ads. A specially generated chat interface designed to resemble a ChatGPT tutorial pretended to guide users through installing the Atlas Browser. The malicious instructions appeared to be hosted on a legitimate site associated with OpenAI, helping attackers gain users’ trust.

    To stay protected, Kaspersky recommends: Carefully verify download links and ensure they point to official project websites. Review any command-line instructions before executing them, especially if copied from external sources. Avoid following guides you did not specifically request or do not fully understand. Use reliable endpoint security solutions capable of detecting and blocking infostealers and malicious downloads.

    Share. Facebook Twitter LinkedIn
    Techie.lk
    • Website

    Related Posts

    Kaspersky finds 26 fake crypto wallet apps on Apple’s App Store that can drain digital assets

    April 20, 2026

    TikTok releases Q4 2025 Community Guidelines Enforcement Report

    April 18, 2026

    Kaspersky reports 2025 financial results, driving revenue to $836mn

    April 12, 2026
    Leave A Reply Cancel Reply

    Demo
    Top Posts

    Sampath Bank and Apartner Bring Digital Payments to Sri Lanka’s Growing Condominium Sector

    March 16, 20268

    Moose Fan App gains significant traction throughout T20 World Cup

    March 12, 20266

    LankaPropertyWeb Unveils “Apartment Finder”: A Game-Changer in the Real Estate Market

    March 10, 20266

    ERASMUS+ NSIS Awareness Day highlights Digital Transformation and Research Skills for Innovation and Entrepreneurship

    March 28, 20265
    Don't Miss
    Local

    Sri Lanka’s USD 2.5 Million Cyber Fraud: Investigations Underway as Questions Emerge Over Payment Process

    By Techie.lkApril 23, 20263

    Sri Lanka is managing the fallout of a cyberattack that resulted in nearly USD 2.5…

    Dialog Enterprise Partners with Star Garments: Pioneering 5G Innovation in Sri Lanka’s Apparel Industry

    April 23, 2026

    99x Shares Key Insights at SLASSCOM Women in Tech Conference 4.0

    April 22, 2026

    VentureTECH invests in Sri Lankan-founded cybersecurity company DeltaSpike to strengthen regional security operations

    April 21, 2026
    Stay In Touch
    • Facebook
    • Twitter
    • LinkedIn

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    Demo
    About Us
    About Us

    Your source for the lifestyle news. This demo is crafted specifically to exhibit the use of the theme as a lifestyle site. Visit our main page for more demos.

    We're accepting new partnerships right now.

    Email Us: hello@techie.lk
    Contact: +94 77 328 0773

    Facebook X (Twitter) LinkedIn
    Our Picks

    Sri Lanka’s USD 2.5 Million Cyber Fraud: Investigations Underway as Questions Emerge Over Payment Process

    April 23, 2026

    Dialog Enterprise Partners with Star Garments: Pioneering 5G Innovation in Sri Lanka’s Apparel Industry

    April 23, 2026

    99x Shares Key Insights at SLASSCOM Women in Tech Conference 4.0

    April 22, 2026
    Most Popular

    Sampath Bank and Apartner Bring Digital Payments to Sri Lanka’s Growing Condominium Sector

    March 16, 20268

    Moose Fan App gains significant traction throughout T20 World Cup

    March 12, 20266

    LankaPropertyWeb Unveils “Apartment Finder”: A Game-Changer in the Real Estate Market

    March 10, 20266
    © 2026 Techie. Designed by NIKO.
    • Terms & Conditions
    • Privacy Policy

    Type above and press Enter to search. Press Esc to cancel.