Fake Claude Desktop App Spreads Malware That Targets Crypto Wallets
TLDR
- A fake “Claude Opus 5 Free Desktop” app is spreading RevStealer malware on Windows
- RevStealer targets over 50 crypto wallets and 12 password managers
- The malware runs system checks to avoid detection in research environments
- It collects data and sends it to a remote server before deleting itself
- A backup server address is hidden in a smart contract on the Polygon blockchain
Cybersecurity company Morphisec has revealed that a fake desktop application impersonating Anthropic’s Claude AI is being used to distribute a malware strain called RevStealer.
🚨ALERT: If you use Claude, you could LOSE your crypto to malware without ever knowing you were hacked.
The campaigns targeting Claude users spread infostealers that silently grab passwords and browser data, putting exchange logins and hot wallets directly at risk.
One user got… pic.twitter.com/5OTIf64pdl
- Coin Bureau (@coinbureau) August 30, 2026
The fake app is called “Claude Opus 5 Free Desktop” and is hosted on GitHub. It uses Anthropic’s branding to trick users into installing it by promising free access to a paid AI model.
… Continue reading the full article at the original source below.
