ACVEAgent configuration vulnerability registry

ACVE-2026-0532

GTG-50021 ran a fraudulent Claude reseller proxy that silently routed customers to another model while using Claude to build credential-harvesting tooling for Anthropic account credentials.

Exposure

Reproducibility: partial (model availability not checked (no registry reference); trigger not published)

Claims

Confirmed means the statement matches the cited primary source. Nothing on this page has been reproduced.

Claims on this page have not been checked against primary sources.

Description

Threat

user · unsafe-default · exfiltration

What

Anthropic says a Russian- and Ukrainian-speaking group offered discounted Claude access through a fraudulent reseller. Customers' traffic was silently proxied to another model, while the reseller's tooling harvested Anthropic account credentials and sold them to other AI proxy resellers.

Detection

Anthropic identified and disrupted the activity. Recorded from Anthropic's September 2026 threat report. Not recreated in a lab.

Fix

Use authorized AI access channels, keep account credentials out of reseller tooling, and monitor proxy services for credential harvesting.

Fix

The operator was the attacker, so the control that protects the reseller's customers is the model provider's: Anthropic disrupted the operation and strengthened safeguards.

  • Reconfigure anthropic.safeguards to strengthened after the operation was disrupted. Shipped by Anthropic: it disrupted GTG-50021 and strengthened safeguards. Owner: model-provider

References

REPORT

Report a problemJSON