<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[https:&#x2F;&#x2F;www.thatprivacyguy.com&#x2F;blog&#x2F;anthropic-spyware]]></title><description><![CDATA[<p><a href="https://www.thatprivacyguy.com/blog/anthropic-spyware" rel="nofollow noopener"><span>https://www.</span><span>thatprivacyguy.com/blog/anthro</span><span>pic-spyware</span></a></p><p>Security researcher Alexander Hanff wrote an article titled Anthropic secretly installs spyware when you install Claude Desktop. Anthropic has not denied the report, as of time of post.</p><p>TLDR:  If a user installs Claude Desktop on a Mac (pc test results tba), it installs a backdoor into every browser, even those not installed. By testing on a clean machine, Hanff discovered that Installing Claude Desktop for macOS drops a Native Messaging host manifest into multiple Chromium profiles (Chrome, Edge, Brave, Arc, Vivaldi, Opera, Chromium), even including for browsers that are not actually installed yet.</p><p>How bad is it? Well...that depends. What it does is create a very wide attack vector, especially for prompt injection. That it is done invisibly, without telling the user, and making it difficult to remove, is certainly problematic. </p><p>I dunno man, maybe don’t use the planet destroying tulip craze? </p><p><a href="https://mefi.social/tags/infosec" rel="tag">#<span>infosec</span></a> <a href="https://mefi.social/tags/claude" rel="tag">#<span>claude</span></a> <a href="https://mefi.social/tags/ai" rel="tag">#<span>ai</span></a> <a href="https://mefi.social/tags/llm" rel="tag">#<span>llm</span></a> <a href="https://mefi.social/tags/security" rel="tag">#<span>security</span></a> <a href="https://mefi.social/tags/browsers" rel="tag">#<span>browsers</span></a></p>]]></description><link>https://board.circlewithadot.net/topic/4fbfb49b-e92d-4b2f-9495-63e3f454b803/https-www.thatprivacyguy.com-blog-anthropic-spyware</link><generator>RSS for Node</generator><lastBuildDate>Fri, 15 May 2026 01:44:46 GMT</lastBuildDate><atom:link href="https://board.circlewithadot.net/topic/4fbfb49b-e92d-4b2f-9495-63e3f454b803.rss" rel="self" type="application/rss+xml"/><pubDate>Mon, 27 Apr 2026 18:36:01 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to https:&#x2F;&#x2F;www.thatprivacyguy.com&#x2F;blog&#x2F;anthropic-spyware on Mon, 27 Apr 2026 23:49:35 GMT]]></title><description><![CDATA[<p><span><a href="/user/missconstrue%40mefi.social">@<span>MissConstrue</span></a></span> they are all so evi and I really hope it takes them all down first. Maybe we’ll have a fighting chance to survive their fuckery.</p>]]></description><link>https://board.circlewithadot.net/post/https://mastodon.social/users/JoBlakely/statuses/116479346300265420</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://mastodon.social/users/JoBlakely/statuses/116479346300265420</guid><dc:creator><![CDATA[joblakely@mastodon.social]]></dc:creator><pubDate>Mon, 27 Apr 2026 23:49:35 GMT</pubDate></item><item><title><![CDATA[Reply to https:&#x2F;&#x2F;www.thatprivacyguy.com&#x2F;blog&#x2F;anthropic-spyware on Mon, 27 Apr 2026 23:03:39 GMT]]></title><description><![CDATA[<p><span><a href="/user/missconstrue%40mefi.social">@<span>MissConstrue</span></a></span> If you do want to use it, use it through a browser. Paste the error message and see what it comes up with. That way it cannot delete your database.</p><p>AI needs to be quarantined until it is proven non-contagious.</p>]]></description><link>https://board.circlewithadot.net/post/https://noc.social/users/mike805/statuses/116479165711221410</link><guid isPermaLink="true">https://board.circlewithadot.net/post/https://noc.social/users/mike805/statuses/116479165711221410</guid><dc:creator><![CDATA[mike805@noc.social]]></dc:creator><pubDate>Mon, 27 Apr 2026 23:03:39 GMT</pubDate></item></channel></rss>