The UAT-10608 hacking group is using automated scanning and scripts to exploit React2Shell in a large-scale credential harvesting campaign.
Within days of each other, Anthropic first leaked the source code to Claude Code, and then a critical vulnerability was found ...
A file containing part of the source code appears to have been leaked with the recent Claude Code 2.1.88 update.