Three high-risk AI vulnerabilities discovered in Claude.ai: End-to-end attack chain leaks sensitive information without the user knowing



  • Oasis researchers discover “Cloudy Day” attack chain on Claude
  • The exploits include invisible fast injection, data exfiltration via APIs, and open redirects.
  • Anthropic fixed one defect and the remaining two are being fixed

Oasis security researchers recently found three vulnerabilities in Claude that, when used together, form a complete attack chain, from targeted delivery to the victim to leakage of sensitive data.

The researchers named it Cloudy Day and responsibly revealed it to Anthropic.



Leave a Comment

Your email address will not be published. Required fields are marked *