• Nosotros
  • Publicidad
  • Trabaja con nosotros
  • Contactos
miércoles, septiembre 2, 2026
  • Login
No Result
View All Result
NEWSLETTER
Despertar Matinal
  • Titulares del Día
    • All
    • En Portada
    Gobierno declara de alto interés nacional el combate al terrorismo ambiental

    Gobierno declara de alto interés nacional el combate al terrorismo ambiental

    Gobierno reporta crecimiento de la inversión extranjera y las exportaciones dominicanas

    Gobierno reporta crecimiento de la inversión extranjera y las exportaciones dominicanas

    Formulación del Plan Estratégico San Juan 2050 concurre exitosamente con la Ley Nacional de Ordenamiento Territorial

    Formulación del Plan Estratégico San Juan 2050 concurre exitosamente con la Ley Nacional de Ordenamiento Territorial

    José Vásquez: “Iré a los tribunales ante caso ANPA; No podrán impedirlo: Limber destruyó aparato productivo”

    José Vásquez: “Iré a los tribunales ante caso ANPA; No podrán impedirlo: Limber destruyó aparato productivo”

    Ministerio Público solicita prisión para dos imputados de maltratar a niños en el local de una fundación

    Ministerio Público solicita prisión para dos imputados de maltratar a niños en el local de una fundación

    DIDA informa que evita afiliados paguen más de RD$18.5 millones en cobros médicos considerados improcedentes

    DIDA informa que evita afiliados paguen más de RD$18.5 millones en cobros médicos considerados improcedentes

    Director de Aduanas aclara sobre tráfico de mercancías hacia Haití

    Director de Aduanas aclara sobre tráfico de mercancías hacia Haití

    Richard Medina: “Crisis económica golpea al pueblo; Lo privado pierde 33 mil empleos; el público subió 35 mil”

    Richard Medina: “Crisis económica golpea al pueblo; Lo privado pierde 33 mil empleos; el público subió 35 mil”

    Leidy Laura Fernández responde a Gustavo Sánchez: “Leonel Fernández está más vivo que nunca y trabajando”

    Leidy Laura Fernández responde a Gustavo Sánchez: “Leonel Fernández está más vivo que nunca y trabajando”

    Trending Tags

    • Mundo
      • All
      • América Latina
      • Conflictos Internacionales
      • Estados Unidos
      • Europa
      • Geopolítica
      • Haití
      • Medio Oriente
      Los cadetes de las Fuerzas Armadas argentinas se formarán como pilotos de drones

      Los cadetes de las Fuerzas Armadas argentinas se formarán como pilotos de drones

      UCR de Córdoba: la Junta Electoral proclamó a Generación X y dejó afuera a Más Radicalismo

      UCR de Córdoba: la Junta Electoral proclamó a Generación X y dejó afuera a Más Radicalismo

      El presidente del Atlético Madrid le dio su respaldo a Julián Álvarez: "Estamos con él para ayudarle"

      El presidente del Atlético Madrid le dio su respaldo a Julián Álvarez: «Estamos con él para ayudarle»

      Adriana Baravalle se reunió con el CEO de NVIDIA y un funcionario de Trump en el marco del G20

      Adriana Baravalle se reunió con el CEO de NVIDIA y un funcionario de Trump en el marco del G20

      Un importante dirigente republicano le pidió a Trump respaldar la soberanía argentina sobre las Malvinas

      Un importante dirigente republicano le pidió a Trump respaldar la soberanía argentina sobre las Malvinas

      Sin lugar en River, Matías Galarza Fonda busca una salida y es pretendido por dos clubes

      Sin lugar en River, Matías Galarza Fonda busca una salida y es pretendido por dos clubes

      Lola Latorre lanzó su marca de electrolitos, la acusaron de plagio y rompió el silencio: “No me voy a lavar las manos”

      Lola Latorre lanzó su marca de electrolitos, la acusaron de plagio y rompió el silencio: “No me voy a lavar las manos”

      Alarmas en Francia: Kylian Mbappé figuraba entre los objetivos de un plan de secuestro de una banda criminal

      Alarmas en Francia: Kylian Mbappé figuraba entre los objetivos de un plan de secuestro de una banda criminal

      ChatGPT Astra: cómo es el nuevo modelo de OpenAI que puede explotar fallas informáticas

      ChatGPT Astra: cómo es el nuevo modelo de OpenAI que puede explotar fallas informáticas

      Trending Tags

      • Nacionales
        • All
        • Bávaro Punta Cana
        • Educación
        • Gobierno
        • Infraestructura
        • Justicia
        • Obras Públicas
        • Opinión
        • Provincias
        • Seguridad Ciudadana
        • semana santa 2026
        • Sociedad
        • Transporte
        Gobierno declara de alto interés nacional el combate al terrorismo ambiental

        Gobierno declara de alto interés nacional el combate al terrorismo ambiental

        Gobierno reporta crecimiento de la inversión extranjera y las exportaciones dominicanas

        Gobierno reporta crecimiento de la inversión extranjera y las exportaciones dominicanas

        Yayo Sanz Lovatón firma alianza con Arizona para impulsar la industria de semiconductores

        Yayo Sanz Lovatón firma alianza con Arizona para impulsar la industria de semiconductores

        Formulación del Plan Estratégico San Juan 2050 concurre exitosamente con la Ley Nacional de Ordenamiento Territorial

        Formulación del Plan Estratégico San Juan 2050 concurre exitosamente con la Ley Nacional de Ordenamiento Territorial

        José Vásquez: “Iré a los tribunales ante caso ANPA; No podrán impedirlo: Limber destruyó aparato productivo”

        José Vásquez: “Iré a los tribunales ante caso ANPA; No podrán impedirlo: Limber destruyó aparato productivo”

        Convocan a jóvenes bachilleres para 1000 plazas laborales de aspirantes a agentes de VTP

        Convocan a jóvenes bachilleres para 1000 plazas laborales de aspirantes a agentes de VTP

        Ministerio Público solicita prisión para dos imputados de maltratar a niños en el local de una fundación

        Ministerio Público solicita prisión para dos imputados de maltratar a niños en el local de una fundación

        DIDA informa que evita afiliados paguen más de RD$18.5 millones en cobros médicos considerados improcedentes

        DIDA informa que evita afiliados paguen más de RD$18.5 millones en cobros médicos considerados improcedentes

        Director de Aduanas aclara sobre tráfico de mercancías hacia Haití

        Director de Aduanas aclara sobre tráfico de mercancías hacia Haití

        Trending Tags

        • Política
          • All
          • Congreso
          • Opinión Política
          • Partidos Políticos
          • Poder Municipal
          • Transparencia y Corrupción
          Fuerza del Pueblo denuncia aumentan las quejas por facturación elevada y persisten los apagones

          Fuerza del Pueblo denuncia aumentan las quejas por facturación elevada y persisten los apagones

          ¡Leonel Fernández llega a San Juan! La Fuerza del Pueblo prepara gran acto de juramentación de nuevos miembros

          ¡Leonel Fernández llega a San Juan! La Fuerza del Pueblo prepara gran acto de juramentación de nuevos miembros

          Dicen proyecto presidencial de Gonzalo Castillo impacta más de 40 territorios el fin de semana

          Dicen proyecto presidencial de Gonzalo Castillo impacta más de 40 territorios el fin de semana

          Antonio Marte juramenta nuevas estructuras fortalecen PPG

          Antonio Marte juramenta nuevas estructuras fortalecen PPG

          Leonel Fernández encabeza asambleas provinciales en despliegue nacional de la Fuerza del Pueblo

          Leonel Fernández encabeza asambleas provinciales en despliegue nacional de la Fuerza del Pueblo

          Rafael Méndez “El Conde” anuncia aspiración a regidor por Fuerza del Pueblo en San Juan de la Maguana

          Rafael Méndez “El Conde” anuncia aspiración a regidor por Fuerza del Pueblo en San Juan de la Maguana

          Vicealcaldesa de Los Alcarrizos abandona el PRM y se juramenta en la Fuerza del Pueblo junto a más de 300 dirigentes

          Vicealcaldesa de Los Alcarrizos abandona el PRM y se juramenta en la Fuerza del Pueblo junto a más de 300 dirigentes

          Leonel afirma PRM no pudo mantener 24 horas de electricidad y la gente está cansada de apagones

          Leonel afirma PRM no pudo mantener 24 horas de electricidad y la gente está cansada de apagones

          Johnny Pujols afirma PLD fortalece su estructura territorial mientras PRM va en picada

          Johnny Pujols afirma PLD fortalece su estructura territorial mientras PRM va en picada

          Trending Tags

          • Deportes
            • All
            • Atletas Dominicanos
            • Béisbol
            DR Open Kiteboarding Championship reúne atletas de 15 países y reafirma a Cabarete como capital del kitesurf del Caribe

            Cabarete se corona como capital histórica del kitesurf con el DR Open Championship 2026

            El impulso olímpico del billar recibe un impulso de los dos campeones mundiales consecutivos de China

            El impulso olímpico del billar recibe un impulso de los dos campeones mundiales consecutivos de China

            La reboteadora líder de todos los tiempos de la WNBA, Tina Charles, se retira del baloncesto

            La reboteadora líder de todos los tiempos de la WNBA, Tina Charles, se retira del baloncesto

            Sabalenka pide boicot si los jugadores no obtienen una mayor parte de los ingresos del Grand Slam

            Sabalenka pide boicot si los jugadores no obtienen una mayor parte de los ingresos del Grand Slam

            Los 76ers tienen un cambio breve y luego una noche larga con una derrota aplastante en el Juego 1

            Los 76ers tienen un cambio breve y luego una noche larga con una derrota aplastante en el Juego 1

            Ex empleado de Stefon Diggs subirá al estrado por segundo día en el juicio por agresión a un jugador de la NFL

            Ex empleado de Stefon Diggs subirá al estrado por segundo día en el juicio por agresión a un jugador de la NFL

            Kansas City es la sede central de la Copa del Mundo y alberga a Inglaterra, Argentina y Holanda, además de 6 partidos.

            Kansas City es la sede central de la Copa del Mundo y alberga a Inglaterra, Argentina y Holanda, además de 6 partidos.

            30 pasajeros son evacuados después de que un crucero encallara en un arrecife en Fiji

            Buffalo recibe a Montreal para abrir la segunda ronda

            Judge quiere una nueva tradición del Bronx: “¡Los Yankees ganan!” de Sterling. antes de la canción de Sinatra

            Judge quiere una nueva tradición del Bronx: “¡Los Yankees ganan!” de Sterling. antes de la canción de Sinatra

            Trending Tags

            • Economía
              • All
              • Combustibles
              • Energía
              • Indicadores Económicos
              • Sector Energético
              • Turismo
              Aerodom anuncia nuevas rutas aéreas, pero la pregunta de fondo es quién fiscaliza la concesión

              Aerodom anuncia nuevas rutas aéreas, pero la pregunta de fondo es quién fiscaliza la concesión

              Aventúrate RD 2026

              Aventúrate RD 2026 revela agenda oficial y consolida el turismo de aventura dominicano

              WTTC: Una inversión de más de un billón de dólares en viajes y turismo es una muestra de confianza en el futuro del sector

              WTTC: Una inversión de más de un billón de dólares en viajes y turismo es una muestra de confianza en el futuro del sector

              Una semana para crear en Samaná: Atelier Yubarta busca conectar arte, naturaleza y turismo en Cayo Levantado Resort

              Una semana para crear en Samaná: Atelier Yubarta busca conectar arte, naturaleza y turismo en Cayo Levantado Resort

              Meta RD 2036: el plan turístico que el Gobierno aplaude sin fiscalización

              Meta RD 2036: el plan turístico que el Gobierno aplaude sin fiscalización

              Viva Resorts impulsa el turismo interno en República Dominicana con jornada exclusiva en Bayahibe

              Viva Resorts impulsa el turismo interno en República Dominicana con jornada exclusiva en Bayahibe

              El ministerio de Turismo cierra con éxito festival gastronómico “Saborea el Paraíso” en Sánchez, Samaná

              El Ministerio de Turismo celebra un exitoso cierre del festival gastronómico «Saborea el Paraíso» en Sánchez, Samaná

              El Consejo Mundial de Viajes y Turismo (WTTC) informa la incorporación de Piñero como miembro global

              El Consejo Mundial de Viajes y Turismo (WTTC) informa la incorporación de Piñero como miembro global

              Más allá del comercio: los efectos del arancel estadounidense sobre el turismo dominicano

              Arancel de EE.UU. pone a prueba al turismo dominicano y al silencio oficial del gobierno

              Trending Tags

              • Ciencia
                • All
                • Energía
                • Innovación
                • Investigación Científica
                • Salud y Medicina
                • Tecnología Médica
                Uber shuts operations in Nigeria and Uganda with immediate effect

                Uber shuts operations in Nigeria and Uganda with immediate effect

                Daphne Caruana Galizia: Maltese tycoon acquitted of orchestrating journalist's murder

                Daphne Caruana Galizia: Maltese tycoon acquitted of orchestrating journalist’s murder

                Iranian attack on Saudi tanker killed two sailors, Saudi Arabia says

                Iranian attack on Saudi tanker killed two sailors, Saudi Arabia says

                Woman charged with juror intimidation in Lindsay Clancy trial

                Woman charged with juror intimidation in Lindsay Clancy trial

                South African airline Airlink behind daring stadium stunt cancels next flyby, regulator says

                South African airline Airlink behind daring stadium stunt cancels next flyby, regulator says

                Nepal intensifies relief and recovery efforts after deadly floods, UN says

                Nepal intensifies relief and recovery efforts after deadly floods, UN says

                EU and Nato vow to step up pressure on Russia after 'new escalation' in Leipzig

                EU and Nato vow to step up pressure on Russia after ‘new escalation’ in Leipzig

                Tiger Woods changes plea, gets five-year driving ban

                Tiger Woods changes plea, gets five-year driving ban

                Odisha: Why Dara Singh, murderer of Christian missionary Graham Staines and his sons, may walk free in India

                Odisha: Why Dara Singh, murderer of Christian missionary Graham Staines and his sons, may walk free in India

                Trending Tags

                • Tecnología
                  • All
                  • Aplicaciones
                  • Inteligencia Artificial
                  Los científicos encuentran un patrón de ondas de 10 lados arremolinándose en las nubes sobre el polo sur de Saturno

                  Los científicos encuentran un patrón de ondas de 10 lados arremolinándose en las nubes sobre el polo sur de Saturno

                  Stolen Claude session cookies can reach corporate Gmail through grants no IT admin can revoke

                  Stolen Claude session cookies can reach corporate Gmail through grants no IT admin can revoke

                  Apple cambia el nombre del lago Ontario a 'Lago América' para los usuarios estadounidenses de sus mapas

                  Apple cambia el nombre del lago Ontario a ‘Lago América’ para los usuarios estadounidenses de sus mapas

                  La ingeniería implementada en el futuro es cómo aprende la IA empresarial

                  La ingeniería implementada en el futuro es cómo aprende la IA empresarial

                  El auge de la IA calienta el mercado inmobiliario del Área de la Bahía

                  El auge de la IA calienta el mercado inmobiliario del Área de la Bahía

                  Los legisladores piden al Ejército que explique por qué le dijo a una unidad militar que dejara de especializarse en la guerra con drones

                  Los legisladores piden al Ejército que explique por qué le dijo a una unidad militar que dejara de especializarse en la guerra con drones

                  Siria estaba construyendo un reactor nuclear en Deir el-Zour bajo Assad, informa la ONU

                  Siria estaba construyendo un reactor nuclear en Deir el-Zour bajo Assad, informa la ONU

                  El calentamiento global superará el límite, dice la ONU en un informe que traza el camino para volver a estar por debajo de la zona de peligro

                  El calentamiento global superará el límite, dice la ONU en un informe que traza el camino para volver a estar por debajo de la zona de peligro

                  Los modelos de frontera pueden recuperar hasta el 65% de los hechos que no pueden recordar directamente, simplemente pensando más

                  Los modelos de frontera pueden recuperar hasta el 65% de los hechos que no pueden recordar directamente, simplemente pensando más

                  Trending Tags

                  • Entretenimiento
                    • All
                    • Cine y Series
                    • Cultura Digital
                    • Cultura Popular
                    • Gastronomía
                    • Música
                    Celine Dion está de regreso en París, pero su primera canción sigue siendo "un gran secreto"

                    Celine Dion está de regreso en París, pero su primera canción sigue siendo «un gran secreto»

                    30 pasajeros son evacuados después de que un crucero encallara en un arrecife en Fiji

                    La ‘Odisea’ de Emily Wilson se convirtió en un punto de inflamación cultural. Ahora ella está retraduciendo todo.

                    Editor, editor y reportero de Stars and Stripes demandan al Pentágono para impugnar sus despidos

                    Editor, editor y reportero de Stars and Stripes demandan al Pentágono para impugnar sus despidos

                    Muere Peter Cullen, el prolífico actor de doblaje que le dio a Optimus Prime su autoritario barítono

                    Muere Peter Cullen, el prolífico actor de doblaje que le dio a Optimus Prime su autoritario barítono

                    Juez pregunta por qué el Kennedy Center se está moviendo tan rápido para devolver el nombre de Trump al edificio

                    Juez pregunta por qué el Kennedy Center se está moviendo tan rápido para devolver el nombre de Trump al edificio

                    Un teatro reinventa la Odisea de Homero a través de la agonía de la guerra de Ucrania

                    Un teatro reinventa la Odisea de Homero a través de la agonía de la guerra de Ucrania

                    En el conflictivo norte de Nigeria, una animada vida nocturna convive con una policía moral e inseguridad.

                    En el conflictivo norte de Nigeria, una animada vida nocturna convive con una policía moral e inseguridad.

                    El rapero Yung Filly regresará a Gran Bretaña antes del juicio por violación en Australia el próximo año

                    El rapero Yung Filly regresará a Gran Bretaña antes del juicio por violación en Australia el próximo año

                    30 pasajeros son evacuados después de que un crucero encallara en un arrecife en Fiji

                    Los británicos tienen la oportunidad de leer las memorias de Jason Arday en las librerías del Reino Unido

                    Trending Tags

                    • Titulares del Día
                      • All
                      • En Portada
                      Gobierno declara de alto interés nacional el combate al terrorismo ambiental

                      Gobierno declara de alto interés nacional el combate al terrorismo ambiental

                      Gobierno reporta crecimiento de la inversión extranjera y las exportaciones dominicanas

                      Gobierno reporta crecimiento de la inversión extranjera y las exportaciones dominicanas

                      Formulación del Plan Estratégico San Juan 2050 concurre exitosamente con la Ley Nacional de Ordenamiento Territorial

                      Formulación del Plan Estratégico San Juan 2050 concurre exitosamente con la Ley Nacional de Ordenamiento Territorial

                      José Vásquez: “Iré a los tribunales ante caso ANPA; No podrán impedirlo: Limber destruyó aparato productivo”

                      José Vásquez: “Iré a los tribunales ante caso ANPA; No podrán impedirlo: Limber destruyó aparato productivo”

                      Ministerio Público solicita prisión para dos imputados de maltratar a niños en el local de una fundación

                      Ministerio Público solicita prisión para dos imputados de maltratar a niños en el local de una fundación

                      DIDA informa que evita afiliados paguen más de RD$18.5 millones en cobros médicos considerados improcedentes

                      DIDA informa que evita afiliados paguen más de RD$18.5 millones en cobros médicos considerados improcedentes

                      Director de Aduanas aclara sobre tráfico de mercancías hacia Haití

                      Director de Aduanas aclara sobre tráfico de mercancías hacia Haití

                      Richard Medina: “Crisis económica golpea al pueblo; Lo privado pierde 33 mil empleos; el público subió 35 mil”

                      Richard Medina: “Crisis económica golpea al pueblo; Lo privado pierde 33 mil empleos; el público subió 35 mil”

                      Leidy Laura Fernández responde a Gustavo Sánchez: “Leonel Fernández está más vivo que nunca y trabajando”

                      Leidy Laura Fernández responde a Gustavo Sánchez: “Leonel Fernández está más vivo que nunca y trabajando”

                      Trending Tags

                      • Mundo
                        • All
                        • América Latina
                        • Conflictos Internacionales
                        • Estados Unidos
                        • Europa
                        • Geopolítica
                        • Haití
                        • Medio Oriente
                        Los cadetes de las Fuerzas Armadas argentinas se formarán como pilotos de drones

                        Los cadetes de las Fuerzas Armadas argentinas se formarán como pilotos de drones

                        UCR de Córdoba: la Junta Electoral proclamó a Generación X y dejó afuera a Más Radicalismo

                        UCR de Córdoba: la Junta Electoral proclamó a Generación X y dejó afuera a Más Radicalismo

                        El presidente del Atlético Madrid le dio su respaldo a Julián Álvarez: "Estamos con él para ayudarle"

                        El presidente del Atlético Madrid le dio su respaldo a Julián Álvarez: «Estamos con él para ayudarle»

                        Adriana Baravalle se reunió con el CEO de NVIDIA y un funcionario de Trump en el marco del G20

                        Adriana Baravalle se reunió con el CEO de NVIDIA y un funcionario de Trump en el marco del G20

                        Un importante dirigente republicano le pidió a Trump respaldar la soberanía argentina sobre las Malvinas

                        Un importante dirigente republicano le pidió a Trump respaldar la soberanía argentina sobre las Malvinas

                        Sin lugar en River, Matías Galarza Fonda busca una salida y es pretendido por dos clubes

                        Sin lugar en River, Matías Galarza Fonda busca una salida y es pretendido por dos clubes

                        Lola Latorre lanzó su marca de electrolitos, la acusaron de plagio y rompió el silencio: “No me voy a lavar las manos”

                        Lola Latorre lanzó su marca de electrolitos, la acusaron de plagio y rompió el silencio: “No me voy a lavar las manos”

                        Alarmas en Francia: Kylian Mbappé figuraba entre los objetivos de un plan de secuestro de una banda criminal

                        Alarmas en Francia: Kylian Mbappé figuraba entre los objetivos de un plan de secuestro de una banda criminal

                        ChatGPT Astra: cómo es el nuevo modelo de OpenAI que puede explotar fallas informáticas

                        ChatGPT Astra: cómo es el nuevo modelo de OpenAI que puede explotar fallas informáticas

                        Trending Tags

                        • Nacionales
                          • All
                          • Bávaro Punta Cana
                          • Educación
                          • Gobierno
                          • Infraestructura
                          • Justicia
                          • Obras Públicas
                          • Opinión
                          • Provincias
                          • Seguridad Ciudadana
                          • semana santa 2026
                          • Sociedad
                          • Transporte
                          Gobierno declara de alto interés nacional el combate al terrorismo ambiental

                          Gobierno declara de alto interés nacional el combate al terrorismo ambiental

                          Gobierno reporta crecimiento de la inversión extranjera y las exportaciones dominicanas

                          Gobierno reporta crecimiento de la inversión extranjera y las exportaciones dominicanas

                          Yayo Sanz Lovatón firma alianza con Arizona para impulsar la industria de semiconductores

                          Yayo Sanz Lovatón firma alianza con Arizona para impulsar la industria de semiconductores

                          Formulación del Plan Estratégico San Juan 2050 concurre exitosamente con la Ley Nacional de Ordenamiento Territorial

                          Formulación del Plan Estratégico San Juan 2050 concurre exitosamente con la Ley Nacional de Ordenamiento Territorial

                          José Vásquez: “Iré a los tribunales ante caso ANPA; No podrán impedirlo: Limber destruyó aparato productivo”

                          José Vásquez: “Iré a los tribunales ante caso ANPA; No podrán impedirlo: Limber destruyó aparato productivo”

                          Convocan a jóvenes bachilleres para 1000 plazas laborales de aspirantes a agentes de VTP

                          Convocan a jóvenes bachilleres para 1000 plazas laborales de aspirantes a agentes de VTP

                          Ministerio Público solicita prisión para dos imputados de maltratar a niños en el local de una fundación

                          Ministerio Público solicita prisión para dos imputados de maltratar a niños en el local de una fundación

                          DIDA informa que evita afiliados paguen más de RD$18.5 millones en cobros médicos considerados improcedentes

                          DIDA informa que evita afiliados paguen más de RD$18.5 millones en cobros médicos considerados improcedentes

                          Director de Aduanas aclara sobre tráfico de mercancías hacia Haití

                          Director de Aduanas aclara sobre tráfico de mercancías hacia Haití

                          Trending Tags

                          • Política
                            • All
                            • Congreso
                            • Opinión Política
                            • Partidos Políticos
                            • Poder Municipal
                            • Transparencia y Corrupción
                            Fuerza del Pueblo denuncia aumentan las quejas por facturación elevada y persisten los apagones

                            Fuerza del Pueblo denuncia aumentan las quejas por facturación elevada y persisten los apagones

                            ¡Leonel Fernández llega a San Juan! La Fuerza del Pueblo prepara gran acto de juramentación de nuevos miembros

                            ¡Leonel Fernández llega a San Juan! La Fuerza del Pueblo prepara gran acto de juramentación de nuevos miembros

                            Dicen proyecto presidencial de Gonzalo Castillo impacta más de 40 territorios el fin de semana

                            Dicen proyecto presidencial de Gonzalo Castillo impacta más de 40 territorios el fin de semana

                            Antonio Marte juramenta nuevas estructuras fortalecen PPG

                            Antonio Marte juramenta nuevas estructuras fortalecen PPG

                            Leonel Fernández encabeza asambleas provinciales en despliegue nacional de la Fuerza del Pueblo

                            Leonel Fernández encabeza asambleas provinciales en despliegue nacional de la Fuerza del Pueblo

                            Rafael Méndez “El Conde” anuncia aspiración a regidor por Fuerza del Pueblo en San Juan de la Maguana

                            Rafael Méndez “El Conde” anuncia aspiración a regidor por Fuerza del Pueblo en San Juan de la Maguana

                            Vicealcaldesa de Los Alcarrizos abandona el PRM y se juramenta en la Fuerza del Pueblo junto a más de 300 dirigentes

                            Vicealcaldesa de Los Alcarrizos abandona el PRM y se juramenta en la Fuerza del Pueblo junto a más de 300 dirigentes

                            Leonel afirma PRM no pudo mantener 24 horas de electricidad y la gente está cansada de apagones

                            Leonel afirma PRM no pudo mantener 24 horas de electricidad y la gente está cansada de apagones

                            Johnny Pujols afirma PLD fortalece su estructura territorial mientras PRM va en picada

                            Johnny Pujols afirma PLD fortalece su estructura territorial mientras PRM va en picada

                            Trending Tags

                            • Deportes
                              • All
                              • Atletas Dominicanos
                              • Béisbol
                              DR Open Kiteboarding Championship reúne atletas de 15 países y reafirma a Cabarete como capital del kitesurf del Caribe

                              Cabarete se corona como capital histórica del kitesurf con el DR Open Championship 2026

                              El impulso olímpico del billar recibe un impulso de los dos campeones mundiales consecutivos de China

                              El impulso olímpico del billar recibe un impulso de los dos campeones mundiales consecutivos de China

                              La reboteadora líder de todos los tiempos de la WNBA, Tina Charles, se retira del baloncesto

                              La reboteadora líder de todos los tiempos de la WNBA, Tina Charles, se retira del baloncesto

                              Sabalenka pide boicot si los jugadores no obtienen una mayor parte de los ingresos del Grand Slam

                              Sabalenka pide boicot si los jugadores no obtienen una mayor parte de los ingresos del Grand Slam

                              Los 76ers tienen un cambio breve y luego una noche larga con una derrota aplastante en el Juego 1

                              Los 76ers tienen un cambio breve y luego una noche larga con una derrota aplastante en el Juego 1

                              Ex empleado de Stefon Diggs subirá al estrado por segundo día en el juicio por agresión a un jugador de la NFL

                              Ex empleado de Stefon Diggs subirá al estrado por segundo día en el juicio por agresión a un jugador de la NFL

                              Kansas City es la sede central de la Copa del Mundo y alberga a Inglaterra, Argentina y Holanda, además de 6 partidos.

                              Kansas City es la sede central de la Copa del Mundo y alberga a Inglaterra, Argentina y Holanda, además de 6 partidos.

                              30 pasajeros son evacuados después de que un crucero encallara en un arrecife en Fiji

                              Buffalo recibe a Montreal para abrir la segunda ronda

                              Judge quiere una nueva tradición del Bronx: “¡Los Yankees ganan!” de Sterling. antes de la canción de Sinatra

                              Judge quiere una nueva tradición del Bronx: “¡Los Yankees ganan!” de Sterling. antes de la canción de Sinatra

                              Trending Tags

                              • Economía
                                • All
                                • Combustibles
                                • Energía
                                • Indicadores Económicos
                                • Sector Energético
                                • Turismo
                                Aerodom anuncia nuevas rutas aéreas, pero la pregunta de fondo es quién fiscaliza la concesión

                                Aerodom anuncia nuevas rutas aéreas, pero la pregunta de fondo es quién fiscaliza la concesión

                                Aventúrate RD 2026

                                Aventúrate RD 2026 revela agenda oficial y consolida el turismo de aventura dominicano

                                WTTC: Una inversión de más de un billón de dólares en viajes y turismo es una muestra de confianza en el futuro del sector

                                WTTC: Una inversión de más de un billón de dólares en viajes y turismo es una muestra de confianza en el futuro del sector

                                Una semana para crear en Samaná: Atelier Yubarta busca conectar arte, naturaleza y turismo en Cayo Levantado Resort

                                Una semana para crear en Samaná: Atelier Yubarta busca conectar arte, naturaleza y turismo en Cayo Levantado Resort

                                Meta RD 2036: el plan turístico que el Gobierno aplaude sin fiscalización

                                Meta RD 2036: el plan turístico que el Gobierno aplaude sin fiscalización

                                Viva Resorts impulsa el turismo interno en República Dominicana con jornada exclusiva en Bayahibe

                                Viva Resorts impulsa el turismo interno en República Dominicana con jornada exclusiva en Bayahibe

                                El ministerio de Turismo cierra con éxito festival gastronómico “Saborea el Paraíso” en Sánchez, Samaná

                                El Ministerio de Turismo celebra un exitoso cierre del festival gastronómico «Saborea el Paraíso» en Sánchez, Samaná

                                El Consejo Mundial de Viajes y Turismo (WTTC) informa la incorporación de Piñero como miembro global

                                El Consejo Mundial de Viajes y Turismo (WTTC) informa la incorporación de Piñero como miembro global

                                Más allá del comercio: los efectos del arancel estadounidense sobre el turismo dominicano

                                Arancel de EE.UU. pone a prueba al turismo dominicano y al silencio oficial del gobierno

                                Trending Tags

                                • Ciencia
                                  • All
                                  • Energía
                                  • Innovación
                                  • Investigación Científica
                                  • Salud y Medicina
                                  • Tecnología Médica
                                  Uber shuts operations in Nigeria and Uganda with immediate effect

                                  Uber shuts operations in Nigeria and Uganda with immediate effect

                                  Daphne Caruana Galizia: Maltese tycoon acquitted of orchestrating journalist's murder

                                  Daphne Caruana Galizia: Maltese tycoon acquitted of orchestrating journalist’s murder

                                  Iranian attack on Saudi tanker killed two sailors, Saudi Arabia says

                                  Iranian attack on Saudi tanker killed two sailors, Saudi Arabia says

                                  Woman charged with juror intimidation in Lindsay Clancy trial

                                  Woman charged with juror intimidation in Lindsay Clancy trial

                                  South African airline Airlink behind daring stadium stunt cancels next flyby, regulator says

                                  South African airline Airlink behind daring stadium stunt cancels next flyby, regulator says

                                  Nepal intensifies relief and recovery efforts after deadly floods, UN says

                                  Nepal intensifies relief and recovery efforts after deadly floods, UN says

                                  EU and Nato vow to step up pressure on Russia after 'new escalation' in Leipzig

                                  EU and Nato vow to step up pressure on Russia after ‘new escalation’ in Leipzig

                                  Tiger Woods changes plea, gets five-year driving ban

                                  Tiger Woods changes plea, gets five-year driving ban

                                  Odisha: Why Dara Singh, murderer of Christian missionary Graham Staines and his sons, may walk free in India

                                  Odisha: Why Dara Singh, murderer of Christian missionary Graham Staines and his sons, may walk free in India

                                  Trending Tags

                                  • Tecnología
                                    • All
                                    • Aplicaciones
                                    • Inteligencia Artificial
                                    Los científicos encuentran un patrón de ondas de 10 lados arremolinándose en las nubes sobre el polo sur de Saturno

                                    Los científicos encuentran un patrón de ondas de 10 lados arremolinándose en las nubes sobre el polo sur de Saturno

                                    Stolen Claude session cookies can reach corporate Gmail through grants no IT admin can revoke

                                    Stolen Claude session cookies can reach corporate Gmail through grants no IT admin can revoke

                                    Apple cambia el nombre del lago Ontario a 'Lago América' para los usuarios estadounidenses de sus mapas

                                    Apple cambia el nombre del lago Ontario a ‘Lago América’ para los usuarios estadounidenses de sus mapas

                                    La ingeniería implementada en el futuro es cómo aprende la IA empresarial

                                    La ingeniería implementada en el futuro es cómo aprende la IA empresarial

                                    El auge de la IA calienta el mercado inmobiliario del Área de la Bahía

                                    El auge de la IA calienta el mercado inmobiliario del Área de la Bahía

                                    Los legisladores piden al Ejército que explique por qué le dijo a una unidad militar que dejara de especializarse en la guerra con drones

                                    Los legisladores piden al Ejército que explique por qué le dijo a una unidad militar que dejara de especializarse en la guerra con drones

                                    Siria estaba construyendo un reactor nuclear en Deir el-Zour bajo Assad, informa la ONU

                                    Siria estaba construyendo un reactor nuclear en Deir el-Zour bajo Assad, informa la ONU

                                    El calentamiento global superará el límite, dice la ONU en un informe que traza el camino para volver a estar por debajo de la zona de peligro

                                    El calentamiento global superará el límite, dice la ONU en un informe que traza el camino para volver a estar por debajo de la zona de peligro

                                    Los modelos de frontera pueden recuperar hasta el 65% de los hechos que no pueden recordar directamente, simplemente pensando más

                                    Los modelos de frontera pueden recuperar hasta el 65% de los hechos que no pueden recordar directamente, simplemente pensando más

                                    Trending Tags

                                    • Entretenimiento
                                      • All
                                      • Cine y Series
                                      • Cultura Digital
                                      • Cultura Popular
                                      • Gastronomía
                                      • Música
                                      Celine Dion está de regreso en París, pero su primera canción sigue siendo "un gran secreto"

                                      Celine Dion está de regreso en París, pero su primera canción sigue siendo «un gran secreto»

                                      30 pasajeros son evacuados después de que un crucero encallara en un arrecife en Fiji

                                      La ‘Odisea’ de Emily Wilson se convirtió en un punto de inflamación cultural. Ahora ella está retraduciendo todo.

                                      Editor, editor y reportero de Stars and Stripes demandan al Pentágono para impugnar sus despidos

                                      Editor, editor y reportero de Stars and Stripes demandan al Pentágono para impugnar sus despidos

                                      Muere Peter Cullen, el prolífico actor de doblaje que le dio a Optimus Prime su autoritario barítono

                                      Muere Peter Cullen, el prolífico actor de doblaje que le dio a Optimus Prime su autoritario barítono

                                      Juez pregunta por qué el Kennedy Center se está moviendo tan rápido para devolver el nombre de Trump al edificio

                                      Juez pregunta por qué el Kennedy Center se está moviendo tan rápido para devolver el nombre de Trump al edificio

                                      Un teatro reinventa la Odisea de Homero a través de la agonía de la guerra de Ucrania

                                      Un teatro reinventa la Odisea de Homero a través de la agonía de la guerra de Ucrania

                                      En el conflictivo norte de Nigeria, una animada vida nocturna convive con una policía moral e inseguridad.

                                      En el conflictivo norte de Nigeria, una animada vida nocturna convive con una policía moral e inseguridad.

                                      El rapero Yung Filly regresará a Gran Bretaña antes del juicio por violación en Australia el próximo año

                                      El rapero Yung Filly regresará a Gran Bretaña antes del juicio por violación en Australia el próximo año

                                      30 pasajeros son evacuados después de que un crucero encallara en un arrecife en Fiji

                                      Los británicos tienen la oportunidad de leer las memorias de Jason Arday en las librerías del Reino Unido

                                      Trending Tags

                                      No Result
                                      View All Result
                                      Despertar Matinal
                                      No Result
                                      View All Result

                                      Stolen Claude session cookies can reach corporate Gmail through grants no IT admin can revoke

                                      by — Redacción Despertar Matinal
                                      2 de septiembre de 2026
                                      in Tecnología
                                      0
                                      Stolen Claude session cookies can reach corporate Gmail through grants no IT admin can revoke
                                      0
                                      SHARES
                                      2
                                      VIEWS
                                      Share on FacebookShare on Twitter

                                      Infostealers replayed stolen Claude session cookies into paid accounts without ever touching the login page two-factor authentication guards.

                                      The accounts Anthropic flagged were card-billed, self-serve accounts, which is the population no corporate identity provider governs, and no admin console can sign out. Session-cookie replay bypasses SSO as thoroughly as it bypasses 2FA. What SSO provides here is revocation and visibility, not prevention. The company disclosed the campaign in notification emails to affected users, named six stealer families, signed the accounts out, stripped the saved payment methods, and refunded the charges it found.

                                      The burned usage is the small loss. What those sessions could reach is the exposure, and none of it sat behind an identity controlled by an enterprise.

                                      Anthropic told affected users that a bad actor was using common infostealer malware to lift Claude login sessions off their computers and then replaying them to burn the accounts’ usage, according to the notification an affected user posted to Reddit and BleepingComputer reported on August 30.

                                      It named Vidar, LummaC2, StealC, RedLine and Acreed on Windows and Atomic Stealer on a small number of Macs, and it described general-purpose malware that copies browser login cookies along with saved passwords. «Your Claude session was likely one of the many things it collected,» the email said.

                                      A session cookie is the proof that a login already happened

                                      The attack chain runs in one direction, from an infected machine through a stolen cookie past a checkpoint that never fires, and into everything the account can reach.

                                      How a stolen session cookie bypasses 2FA and reaches a personal Claude account’s connector grants into corporate Google Workspace. Credit: VentureBeat made with Gemini

                                      Signing the accounts out worked because a replayed cookie dies with the session it copies.

                                      Two-factor authentication guards the login page. The site then hands the browser a cookie so the user stays signed in, and an attacker who copies that cookie and replays it looks to the server like the person who already passed the check. Help Net Security described the mechanism on August 31 as session theft becoming the new credential theft.

                                      Anthropic spotted the theft in the usage meter. Limits were refilled and drained while the owner was away from Claude, the company wrote.

                                      One Redditor who received the notification traced the infection to a pirated game, per BleepingComputer. That is one machine, and Anthropic has not said what the others ran.

                                      Anthropic’s notification gave no count. The company had not responded by publication to VentureBeat’s questions on how many accounts were affected, whether any Team or Enterprise seats behind SSO were among them, or whether the replayed sessions reached conversation history or connected apps rather than usage alone.

                                      Removing a saved card and refunding charges point to directly billed, self-serve accounts that authenticate through Anthropic’s own login rather than a corporate identity provider. Those include personal subscriptions. Team and self-serve Enterprise organizations can also be card-billed, so the deduction is strong rather than closed.

                                      Bugcrowd CEO Dave Gerry told Axios in early August that his company sent employees nearly a dozen emails saying the OpenClaw agent was not allowed on corporate networks, and employees kept trying to download it anyway. A personal Claude subscription on a managed laptop is the same reflex, and it comes with a card on file. LayerX data in Akamai’s enterprise AI risk report found 47% of enterprise AI conversations run through personal identities, with Claude at 61%.

                                      The pirated game is one vector. In July, attackers hosted a spoofed Claude download page on the claude.ai domain itself through a public Artifact, and a sponsored Bing ad sent employees searching for «Claude Desktop app» straight to it. Huntress documented the campaign, named FakeAgent, after SectopRAT compromised employees at 29 organizations in two days. The artifact collected roughly 7,100 downloads before Anthropic removed it. A separate campaign pushed a fake Claude installer through a spoofed download site earlier in the year, per Malwarebytes. The vector is not piracy. It is enterprise employees searching for the official app on their work machines.

                                      Refunds cover the usage. Nothing covers the connectors

                                      A replayed session inherits everything the legitimate one could reach, and Anthropic has not said whether these did. On a Claude account, that means the conversation history, the files uploaded into projects, and any connectors the owner authorized. Anthropic’s help center states that connectors let Claude retrieve data and take actions inside connected services and that Claude inherits each person’s permissions from the connected service. Read and search operations run without approval. Write actions, including send, reply, forward, share, move, and trash, are approval-gated by default. The exfiltration path is the one that is open. Google Workspace connectors are available to individual Claude accounts, so a personal Pro subscription can hold a live authorization into a Gmail inbox or a Drive folder.

                                      If that inbox is the work inbox, the attacker holding the replayed cookie has a read path into it that the corporate identity provider evaluated once, at the moment the employee clicked allow, and rarely again. On a personal plan, the employee owns that grant. No Claude tenant administrator can sign that account out, and the Workspace or Entra administrator who can pull the underlying grant rarely knows it exists.

                                      Adam Meyers, CrowdStrike’s senior vice president of counter adversary operations, put numbers to the market in an August 6 Axios interview. Criminals have been buying and reselling stolen ChatGPT, Claude and Gemini credentials since ChatGPT took off in late 2022, fed by infostealer malware. CrowdStrike’s 2026 Threat Hunting Report documents one LLMjacking campaign that pushed nearly 200,000 API requests through a compromised cloud account’s AI model access in two minutes.

                                      Meyers drew the line in a July briefing on the report. LLMjacking, in his framing, is stealing the credentials, and cost harvesting is what the buyer does next, manipulating AI resources that belong to the victim «in order to conduct operations and generate massive bills as a byproduct of that,» he said. «So think of this as LLM coin mining.»

                                      One architect refused to build the same exposure into his product

                                      Tom Kleinpeter, co-founder and chief architect at Common Room, described in written answers to VentureBeat why he held his company’s AI agent integrations back through the summer of 2025.

                                      «We rejected local MCP servers early, full stop. That path meant storing a long-lived API key or token on someone’s machine. Steal that credential, and you can impersonate the user, pull their data, or do anything else the token allows, indefinitely, until someone notices and manually revokes it. We weren’t willing to ship that.»

                                      Common Room shipped its first agent integration in October 2025 with Okta’s Auth0 handling authentication, separate read and write scopes, and writes off by default, per Kleinpeter.

                                      An AI coding agent working on Common Room’s own system proposed caching access tokens in plain text in Redis to cut down on repeated authentication calls, he wrote. It worked, and it would have parked live credentials in shared infrastructure had a human reviewer not caught it before it shipped.

                                      Asked what was acceptable in 2024 and a liability now, he named one thing. «Long-lived, broadly scoped API keys. Those made sense when one human operated one trusted system and stayed in the loop. Agents now run across laptops and multiple clients, often with no human watching in real time.»

                                      Okta gave agents governed identities the same week Claude users lost their cookies

                                      Okta made Agent SSO generally available on August 24, registering AI agents as first-class identities in Universal Directory and issuing short-lived, identity-governed tokens in place of stored credentials, according to the company’s announcement. The release names Claude as its example of an agent a security team can now govern natively.

                                      Six days later, Anthropic was signing users out because six stealer families had copied the humans’ Claude cookies. The agents got governed identities. The people using Claude on their own cards did not.

                                      VentureBeat’s July Pulse Research wave on agent security found 63% of 116 enterprises report credential sharing somewhere among their AI agents, and 3% run Okta for AI Agents.

                                      That 3% has a reason, Kayne McGladrey, author of the forthcoming «Cyber Risk is a Myth» and a senior IEEE member, told VentureBeat during a July interview. «It’s only those well-resourced companies that are above the poverty line that have met all the prerequisites,» he said.

                                      The prerequisites he named are the same controls most enterprises still treat as hygiene, not strategic investment.

                                      «If they don’t have their defenses in order, like attack surface management or blast radius containment or basic MFA, that would not be a useful capability or a meaningful spend.»

                                      Anthropic’s position deserves its hearing. The company told users it has no reason to believe the malware is related to Claude, installed through Claude, or tied to anything they did with Claude, and it warned that signing out stops the stolen sessions while leaving the malware in place to steal the next login.

                                      Both hold, and they are the last thing a provider can do, because the infected device belongs to the customer. On a work laptop, the device belongs to the enterprise, and the control that catches Vidar or LummaC2 before it reads a cookie jar is endpoint detection, the control in this story the security team already runs.

                                      The profession’s gap is rarely a missing control anymore, in McGladrey’s framing. «I think we’ve got technical solutions for nearly all of the things that could go wrong, what we don’t have is a way of prioritizing those,» he argued.

                                      The endpoint team owns the machine. The identity team owns an SSO the account never touched, and the AI governance lead wrote a policy the employee routed around the day the card went on file.

                                      Each of those owners is paid to close a different gap. «Engineering is comped on getting product out the door quickly, your internal audit team is comped on checking boxes to meet your compliance goals, and security is comped and sometimes penalized on a lack of incidents,» he argued. «People aren’t doing the wrong thing either. They’re doing what pays their bills on an ongoing basis.»

                                      What security leaders need to do next

                                      Add AI accounts to the infostealer response playbook. When an endpoint alert names a stealer family, treat every AI service session on that machine as compromised, revoke what the enterprise tenant lets you revoke, and have the employee sign out of personal accounts until the machine is clean.

                                      Warn users that the notification itself is now a phishing template. Help Net Security flagged copycat phishing impersonating Anthropic using this campaign as pretext. If the notification lands in a user’s inbox, the next email that looks like it may not be from Anthropic.

                                      Count the personal subscriptions on managed devices. Browser telemetry, CASB logs, and expense reports surface the sessions and the payments.

                                      Stop personal AI accounts from holding OAuth grants into corporate Google Workspace or Microsoft 365. Both platforms let administrators restrict third-party app authorization. Use that gate so a work inbox can only be attached from a tenant the security team can revoke.

                                      Revoke the OAuth grants Claude already holds, not just the Claude session. Signing out of Claude invalidates the stolen session but does not revoke the Google or Microsoft grant Claude was already authorized to use. Check Google’s third-party app authorizations and Microsoft’s enterprise application consents for live grants the sign-out left behind.

                                      Move the heavy users onto the organization-managed tenant. On Team and Enterprise plans, an owner decides whether connectors can be enabled at all.

                                      Put session binding on the renewal agenda. Google shipped Device Bound Session Credentials in Chrome 146 on Windows in April and turned it on by default for Google accounts and Workspace Individual accounts in May, binding each session to a private key in the device’s TPM so a copied cookie cannot be refreshed anywhere else. It covers Chrome on Windows only so far, so the Mac victims in this campaign sit outside it. Ask Anthropic and OpenAI for parity and Google for a coverage date before the next contract signs.

                                      Anthropic sent its notification to individuals. The laptop the cookie came from belongs to whoever manages it, and Vidar and LummaC2 will be back for the next login on the same machine.

                                      Tour Cayo Arena Día Feriado Tour Cayo Arena Día Feriado Tour Cayo Arena Día Feriado

                                      Infostealers replayed stolen Claude session cookies into paid accounts without ever touching the login page two-factor authentication guards.

                                      The accounts Anthropic flagged were card-billed, self-serve accounts, which is the population no corporate identity provider governs, and no admin console can sign out. Session-cookie replay bypasses SSO as thoroughly as it bypasses 2FA. What SSO provides here is revocation and visibility, not prevention. The company disclosed the campaign in notification emails to affected users, named six stealer families, signed the accounts out, stripped the saved payment methods, and refunded the charges it found.

                                      The burned usage is the small loss. What those sessions could reach is the exposure, and none of it sat behind an identity controlled by an enterprise.

                                      Anthropic told affected users that a bad actor was using common infostealer malware to lift Claude login sessions off their computers and then replaying them to burn the accounts’ usage, according to the notification an affected user posted to Reddit and BleepingComputer reported on August 30.

                                      It named Vidar, LummaC2, StealC, RedLine and Acreed on Windows and Atomic Stealer on a small number of Macs, and it described general-purpose malware that copies browser login cookies along with saved passwords. «Your Claude session was likely one of the many things it collected,» the email said.

                                      A session cookie is the proof that a login already happened

                                      The attack chain runs in one direction, from an infected machine through a stolen cookie past a checkpoint that never fires, and into everything the account can reach.

                                      How a stolen session cookie bypasses 2FA and reaches a personal Claude account’s connector grants into corporate Google Workspace. Credit: VentureBeat made with Gemini

                                      Signing the accounts out worked because a replayed cookie dies with the session it copies.

                                      Two-factor authentication guards the login page. The site then hands the browser a cookie so the user stays signed in, and an attacker who copies that cookie and replays it looks to the server like the person who already passed the check. Help Net Security described the mechanism on August 31 as session theft becoming the new credential theft.

                                      Anthropic spotted the theft in the usage meter. Limits were refilled and drained while the owner was away from Claude, the company wrote.

                                      One Redditor who received the notification traced the infection to a pirated game, per BleepingComputer. That is one machine, and Anthropic has not said what the others ran.

                                      Anthropic’s notification gave no count. The company had not responded by publication to VentureBeat’s questions on how many accounts were affected, whether any Team or Enterprise seats behind SSO were among them, or whether the replayed sessions reached conversation history or connected apps rather than usage alone.

                                      Removing a saved card and refunding charges point to directly billed, self-serve accounts that authenticate through Anthropic’s own login rather than a corporate identity provider. Those include personal subscriptions. Team and self-serve Enterprise organizations can also be card-billed, so the deduction is strong rather than closed.

                                      Bugcrowd CEO Dave Gerry told Axios in early August that his company sent employees nearly a dozen emails saying the OpenClaw agent was not allowed on corporate networks, and employees kept trying to download it anyway. A personal Claude subscription on a managed laptop is the same reflex, and it comes with a card on file. LayerX data in Akamai’s enterprise AI risk report found 47% of enterprise AI conversations run through personal identities, with Claude at 61%.

                                      The pirated game is one vector. In July, attackers hosted a spoofed Claude download page on the claude.ai domain itself through a public Artifact, and a sponsored Bing ad sent employees searching for «Claude Desktop app» straight to it. Huntress documented the campaign, named FakeAgent, after SectopRAT compromised employees at 29 organizations in two days. The artifact collected roughly 7,100 downloads before Anthropic removed it. A separate campaign pushed a fake Claude installer through a spoofed download site earlier in the year, per Malwarebytes. The vector is not piracy. It is enterprise employees searching for the official app on their work machines.

                                      Refunds cover the usage. Nothing covers the connectors

                                      A replayed session inherits everything the legitimate one could reach, and Anthropic has not said whether these did. On a Claude account, that means the conversation history, the files uploaded into projects, and any connectors the owner authorized. Anthropic’s help center states that connectors let Claude retrieve data and take actions inside connected services and that Claude inherits each person’s permissions from the connected service. Read and search operations run without approval. Write actions, including send, reply, forward, share, move, and trash, are approval-gated by default. The exfiltration path is the one that is open. Google Workspace connectors are available to individual Claude accounts, so a personal Pro subscription can hold a live authorization into a Gmail inbox or a Drive folder.

                                      If that inbox is the work inbox, the attacker holding the replayed cookie has a read path into it that the corporate identity provider evaluated once, at the moment the employee clicked allow, and rarely again. On a personal plan, the employee owns that grant. No Claude tenant administrator can sign that account out, and the Workspace or Entra administrator who can pull the underlying grant rarely knows it exists.

                                      Adam Meyers, CrowdStrike’s senior vice president of counter adversary operations, put numbers to the market in an August 6 Axios interview. Criminals have been buying and reselling stolen ChatGPT, Claude and Gemini credentials since ChatGPT took off in late 2022, fed by infostealer malware. CrowdStrike’s 2026 Threat Hunting Report documents one LLMjacking campaign that pushed nearly 200,000 API requests through a compromised cloud account’s AI model access in two minutes.

                                      Meyers drew the line in a July briefing on the report. LLMjacking, in his framing, is stealing the credentials, and cost harvesting is what the buyer does next, manipulating AI resources that belong to the victim «in order to conduct operations and generate massive bills as a byproduct of that,» he said. «So think of this as LLM coin mining.»

                                      One architect refused to build the same exposure into his product

                                      Tom Kleinpeter, co-founder and chief architect at Common Room, described in written answers to VentureBeat why he held his company’s AI agent integrations back through the summer of 2025.

                                      «We rejected local MCP servers early, full stop. That path meant storing a long-lived API key or token on someone’s machine. Steal that credential, and you can impersonate the user, pull their data, or do anything else the token allows, indefinitely, until someone notices and manually revokes it. We weren’t willing to ship that.»

                                      Common Room shipped its first agent integration in October 2025 with Okta’s Auth0 handling authentication, separate read and write scopes, and writes off by default, per Kleinpeter.

                                      An AI coding agent working on Common Room’s own system proposed caching access tokens in plain text in Redis to cut down on repeated authentication calls, he wrote. It worked, and it would have parked live credentials in shared infrastructure had a human reviewer not caught it before it shipped.

                                      Asked what was acceptable in 2024 and a liability now, he named one thing. «Long-lived, broadly scoped API keys. Those made sense when one human operated one trusted system and stayed in the loop. Agents now run across laptops and multiple clients, often with no human watching in real time.»

                                      Okta gave agents governed identities the same week Claude users lost their cookies

                                      Okta made Agent SSO generally available on August 24, registering AI agents as first-class identities in Universal Directory and issuing short-lived, identity-governed tokens in place of stored credentials, according to the company’s announcement. The release names Claude as its example of an agent a security team can now govern natively.

                                      Six days later, Anthropic was signing users out because six stealer families had copied the humans’ Claude cookies. The agents got governed identities. The people using Claude on their own cards did not.

                                      VentureBeat’s July Pulse Research wave on agent security found 63% of 116 enterprises report credential sharing somewhere among their AI agents, and 3% run Okta for AI Agents.

                                      That 3% has a reason, Kayne McGladrey, author of the forthcoming «Cyber Risk is a Myth» and a senior IEEE member, told VentureBeat during a July interview. «It’s only those well-resourced companies that are above the poverty line that have met all the prerequisites,» he said.

                                      The prerequisites he named are the same controls most enterprises still treat as hygiene, not strategic investment.

                                      «If they don’t have their defenses in order, like attack surface management or blast radius containment or basic MFA, that would not be a useful capability or a meaningful spend.»

                                      Anthropic’s position deserves its hearing. The company told users it has no reason to believe the malware is related to Claude, installed through Claude, or tied to anything they did with Claude, and it warned that signing out stops the stolen sessions while leaving the malware in place to steal the next login.

                                      Both hold, and they are the last thing a provider can do, because the infected device belongs to the customer. On a work laptop, the device belongs to the enterprise, and the control that catches Vidar or LummaC2 before it reads a cookie jar is endpoint detection, the control in this story the security team already runs.

                                      The profession’s gap is rarely a missing control anymore, in McGladrey’s framing. «I think we’ve got technical solutions for nearly all of the things that could go wrong, what we don’t have is a way of prioritizing those,» he argued.

                                      The endpoint team owns the machine. The identity team owns an SSO the account never touched, and the AI governance lead wrote a policy the employee routed around the day the card went on file.

                                      Each of those owners is paid to close a different gap. «Engineering is comped on getting product out the door quickly, your internal audit team is comped on checking boxes to meet your compliance goals, and security is comped and sometimes penalized on a lack of incidents,» he argued. «People aren’t doing the wrong thing either. They’re doing what pays their bills on an ongoing basis.»

                                      What security leaders need to do next

                                      Add AI accounts to the infostealer response playbook. When an endpoint alert names a stealer family, treat every AI service session on that machine as compromised, revoke what the enterprise tenant lets you revoke, and have the employee sign out of personal accounts until the machine is clean.

                                      Warn users that the notification itself is now a phishing template. Help Net Security flagged copycat phishing impersonating Anthropic using this campaign as pretext. If the notification lands in a user’s inbox, the next email that looks like it may not be from Anthropic.

                                      Count the personal subscriptions on managed devices. Browser telemetry, CASB logs, and expense reports surface the sessions and the payments.

                                      Stop personal AI accounts from holding OAuth grants into corporate Google Workspace or Microsoft 365. Both platforms let administrators restrict third-party app authorization. Use that gate so a work inbox can only be attached from a tenant the security team can revoke.

                                      Revoke the OAuth grants Claude already holds, not just the Claude session. Signing out of Claude invalidates the stolen session but does not revoke the Google or Microsoft grant Claude was already authorized to use. Check Google’s third-party app authorizations and Microsoft’s enterprise application consents for live grants the sign-out left behind.

                                      Move the heavy users onto the organization-managed tenant. On Team and Enterprise plans, an owner decides whether connectors can be enabled at all.

                                      Put session binding on the renewal agenda. Google shipped Device Bound Session Credentials in Chrome 146 on Windows in April and turned it on by default for Google accounts and Workspace Individual accounts in May, binding each session to a private key in the device’s TPM so a copied cookie cannot be refreshed anywhere else. It covers Chrome on Windows only so far, so the Mac victims in this campaign sit outside it. Ask Anthropic and OpenAI for parity and Google for a coverage date before the next contract signs.

                                      Anthropic sent its notification to individuals. The laptop the cookie came from belongs to whoever manages it, and Vidar and LummaC2 will be back for the next login on the same machine.

                                      Tours Colombia Todo el año Tours Colombia Todo el año Tours Colombia Todo el año

                                      Infostealers replayed stolen Claude session cookies into paid accounts without ever touching the login page two-factor authentication guards.

                                      The accounts Anthropic flagged were card-billed, self-serve accounts, which is the population no corporate identity provider governs, and no admin console can sign out. Session-cookie replay bypasses SSO as thoroughly as it bypasses 2FA. What SSO provides here is revocation and visibility, not prevention. The company disclosed the campaign in notification emails to affected users, named six stealer families, signed the accounts out, stripped the saved payment methods, and refunded the charges it found.

                                      The burned usage is the small loss. What those sessions could reach is the exposure, and none of it sat behind an identity controlled by an enterprise.

                                      Anthropic told affected users that a bad actor was using common infostealer malware to lift Claude login sessions off their computers and then replaying them to burn the accounts’ usage, according to the notification an affected user posted to Reddit and BleepingComputer reported on August 30.

                                      It named Vidar, LummaC2, StealC, RedLine and Acreed on Windows and Atomic Stealer on a small number of Macs, and it described general-purpose malware that copies browser login cookies along with saved passwords. «Your Claude session was likely one of the many things it collected,» the email said.

                                      A session cookie is the proof that a login already happened

                                      The attack chain runs in one direction, from an infected machine through a stolen cookie past a checkpoint that never fires, and into everything the account can reach.

                                      How a stolen session cookie bypasses 2FA and reaches a personal Claude account’s connector grants into corporate Google Workspace. Credit: VentureBeat made with Gemini

                                      Signing the accounts out worked because a replayed cookie dies with the session it copies.

                                      Two-factor authentication guards the login page. The site then hands the browser a cookie so the user stays signed in, and an attacker who copies that cookie and replays it looks to the server like the person who already passed the check. Help Net Security described the mechanism on August 31 as session theft becoming the new credential theft.

                                      Anthropic spotted the theft in the usage meter. Limits were refilled and drained while the owner was away from Claude, the company wrote.

                                      One Redditor who received the notification traced the infection to a pirated game, per BleepingComputer. That is one machine, and Anthropic has not said what the others ran.

                                      Anthropic’s notification gave no count. The company had not responded by publication to VentureBeat’s questions on how many accounts were affected, whether any Team or Enterprise seats behind SSO were among them, or whether the replayed sessions reached conversation history or connected apps rather than usage alone.

                                      Removing a saved card and refunding charges point to directly billed, self-serve accounts that authenticate through Anthropic’s own login rather than a corporate identity provider. Those include personal subscriptions. Team and self-serve Enterprise organizations can also be card-billed, so the deduction is strong rather than closed.

                                      Bugcrowd CEO Dave Gerry told Axios in early August that his company sent employees nearly a dozen emails saying the OpenClaw agent was not allowed on corporate networks, and employees kept trying to download it anyway. A personal Claude subscription on a managed laptop is the same reflex, and it comes with a card on file. LayerX data in Akamai’s enterprise AI risk report found 47% of enterprise AI conversations run through personal identities, with Claude at 61%.

                                      The pirated game is one vector. In July, attackers hosted a spoofed Claude download page on the claude.ai domain itself through a public Artifact, and a sponsored Bing ad sent employees searching for «Claude Desktop app» straight to it. Huntress documented the campaign, named FakeAgent, after SectopRAT compromised employees at 29 organizations in two days. The artifact collected roughly 7,100 downloads before Anthropic removed it. A separate campaign pushed a fake Claude installer through a spoofed download site earlier in the year, per Malwarebytes. The vector is not piracy. It is enterprise employees searching for the official app on their work machines.

                                      Refunds cover the usage. Nothing covers the connectors

                                      A replayed session inherits everything the legitimate one could reach, and Anthropic has not said whether these did. On a Claude account, that means the conversation history, the files uploaded into projects, and any connectors the owner authorized. Anthropic’s help center states that connectors let Claude retrieve data and take actions inside connected services and that Claude inherits each person’s permissions from the connected service. Read and search operations run without approval. Write actions, including send, reply, forward, share, move, and trash, are approval-gated by default. The exfiltration path is the one that is open. Google Workspace connectors are available to individual Claude accounts, so a personal Pro subscription can hold a live authorization into a Gmail inbox or a Drive folder.

                                      If that inbox is the work inbox, the attacker holding the replayed cookie has a read path into it that the corporate identity provider evaluated once, at the moment the employee clicked allow, and rarely again. On a personal plan, the employee owns that grant. No Claude tenant administrator can sign that account out, and the Workspace or Entra administrator who can pull the underlying grant rarely knows it exists.

                                      Adam Meyers, CrowdStrike’s senior vice president of counter adversary operations, put numbers to the market in an August 6 Axios interview. Criminals have been buying and reselling stolen ChatGPT, Claude and Gemini credentials since ChatGPT took off in late 2022, fed by infostealer malware. CrowdStrike’s 2026 Threat Hunting Report documents one LLMjacking campaign that pushed nearly 200,000 API requests through a compromised cloud account’s AI model access in two minutes.

                                      Meyers drew the line in a July briefing on the report. LLMjacking, in his framing, is stealing the credentials, and cost harvesting is what the buyer does next, manipulating AI resources that belong to the victim «in order to conduct operations and generate massive bills as a byproduct of that,» he said. «So think of this as LLM coin mining.»

                                      One architect refused to build the same exposure into his product

                                      Tom Kleinpeter, co-founder and chief architect at Common Room, described in written answers to VentureBeat why he held his company’s AI agent integrations back through the summer of 2025.

                                      «We rejected local MCP servers early, full stop. That path meant storing a long-lived API key or token on someone’s machine. Steal that credential, and you can impersonate the user, pull their data, or do anything else the token allows, indefinitely, until someone notices and manually revokes it. We weren’t willing to ship that.»

                                      Common Room shipped its first agent integration in October 2025 with Okta’s Auth0 handling authentication, separate read and write scopes, and writes off by default, per Kleinpeter.

                                      An AI coding agent working on Common Room’s own system proposed caching access tokens in plain text in Redis to cut down on repeated authentication calls, he wrote. It worked, and it would have parked live credentials in shared infrastructure had a human reviewer not caught it before it shipped.

                                      Asked what was acceptable in 2024 and a liability now, he named one thing. «Long-lived, broadly scoped API keys. Those made sense when one human operated one trusted system and stayed in the loop. Agents now run across laptops and multiple clients, often with no human watching in real time.»

                                      Okta gave agents governed identities the same week Claude users lost their cookies

                                      Okta made Agent SSO generally available on August 24, registering AI agents as first-class identities in Universal Directory and issuing short-lived, identity-governed tokens in place of stored credentials, according to the company’s announcement. The release names Claude as its example of an agent a security team can now govern natively.

                                      Six days later, Anthropic was signing users out because six stealer families had copied the humans’ Claude cookies. The agents got governed identities. The people using Claude on their own cards did not.

                                      VentureBeat’s July Pulse Research wave on agent security found 63% of 116 enterprises report credential sharing somewhere among their AI agents, and 3% run Okta for AI Agents.

                                      That 3% has a reason, Kayne McGladrey, author of the forthcoming «Cyber Risk is a Myth» and a senior IEEE member, told VentureBeat during a July interview. «It’s only those well-resourced companies that are above the poverty line that have met all the prerequisites,» he said.

                                      The prerequisites he named are the same controls most enterprises still treat as hygiene, not strategic investment.

                                      «If they don’t have their defenses in order, like attack surface management or blast radius containment or basic MFA, that would not be a useful capability or a meaningful spend.»

                                      Anthropic’s position deserves its hearing. The company told users it has no reason to believe the malware is related to Claude, installed through Claude, or tied to anything they did with Claude, and it warned that signing out stops the stolen sessions while leaving the malware in place to steal the next login.

                                      Both hold, and they are the last thing a provider can do, because the infected device belongs to the customer. On a work laptop, the device belongs to the enterprise, and the control that catches Vidar or LummaC2 before it reads a cookie jar is endpoint detection, the control in this story the security team already runs.

                                      The profession’s gap is rarely a missing control anymore, in McGladrey’s framing. «I think we’ve got technical solutions for nearly all of the things that could go wrong, what we don’t have is a way of prioritizing those,» he argued.

                                      The endpoint team owns the machine. The identity team owns an SSO the account never touched, and the AI governance lead wrote a policy the employee routed around the day the card went on file.

                                      Each of those owners is paid to close a different gap. «Engineering is comped on getting product out the door quickly, your internal audit team is comped on checking boxes to meet your compliance goals, and security is comped and sometimes penalized on a lack of incidents,» he argued. «People aren’t doing the wrong thing either. They’re doing what pays their bills on an ongoing basis.»

                                      What security leaders need to do next

                                      Add AI accounts to the infostealer response playbook. When an endpoint alert names a stealer family, treat every AI service session on that machine as compromised, revoke what the enterprise tenant lets you revoke, and have the employee sign out of personal accounts until the machine is clean.

                                      Warn users that the notification itself is now a phishing template. Help Net Security flagged copycat phishing impersonating Anthropic using this campaign as pretext. If the notification lands in a user’s inbox, the next email that looks like it may not be from Anthropic.

                                      Count the personal subscriptions on managed devices. Browser telemetry, CASB logs, and expense reports surface the sessions and the payments.

                                      Stop personal AI accounts from holding OAuth grants into corporate Google Workspace or Microsoft 365. Both platforms let administrators restrict third-party app authorization. Use that gate so a work inbox can only be attached from a tenant the security team can revoke.

                                      Revoke the OAuth grants Claude already holds, not just the Claude session. Signing out of Claude invalidates the stolen session but does not revoke the Google or Microsoft grant Claude was already authorized to use. Check Google’s third-party app authorizations and Microsoft’s enterprise application consents for live grants the sign-out left behind.

                                      Move the heavy users onto the organization-managed tenant. On Team and Enterprise plans, an owner decides whether connectors can be enabled at all.

                                      Put session binding on the renewal agenda. Google shipped Device Bound Session Credentials in Chrome 146 on Windows in April and turned it on by default for Google accounts and Workspace Individual accounts in May, binding each session to a private key in the device’s TPM so a copied cookie cannot be refreshed anywhere else. It covers Chrome on Windows only so far, so the Mac victims in this campaign sit outside it. Ask Anthropic and OpenAI for parity and Google for a coverage date before the next contract signs.

                                      Anthropic sent its notification to individuals. The laptop the cookie came from belongs to whoever manages it, and Vidar and LummaC2 will be back for the next login on the same machine.

                                      Tour Cayo Arena Día Feriado Tour Cayo Arena Día Feriado Tour Cayo Arena Día Feriado

                                      Infostealers replayed stolen Claude session cookies into paid accounts without ever touching the login page two-factor authentication guards.

                                      The accounts Anthropic flagged were card-billed, self-serve accounts, which is the population no corporate identity provider governs, and no admin console can sign out. Session-cookie replay bypasses SSO as thoroughly as it bypasses 2FA. What SSO provides here is revocation and visibility, not prevention. The company disclosed the campaign in notification emails to affected users, named six stealer families, signed the accounts out, stripped the saved payment methods, and refunded the charges it found.

                                      The burned usage is the small loss. What those sessions could reach is the exposure, and none of it sat behind an identity controlled by an enterprise.

                                      Anthropic told affected users that a bad actor was using common infostealer malware to lift Claude login sessions off their computers and then replaying them to burn the accounts’ usage, according to the notification an affected user posted to Reddit and BleepingComputer reported on August 30.

                                      It named Vidar, LummaC2, StealC, RedLine and Acreed on Windows and Atomic Stealer on a small number of Macs, and it described general-purpose malware that copies browser login cookies along with saved passwords. «Your Claude session was likely one of the many things it collected,» the email said.

                                      A session cookie is the proof that a login already happened

                                      The attack chain runs in one direction, from an infected machine through a stolen cookie past a checkpoint that never fires, and into everything the account can reach.

                                      How a stolen session cookie bypasses 2FA and reaches a personal Claude account’s connector grants into corporate Google Workspace. Credit: VentureBeat made with Gemini

                                      Signing the accounts out worked because a replayed cookie dies with the session it copies.

                                      Two-factor authentication guards the login page. The site then hands the browser a cookie so the user stays signed in, and an attacker who copies that cookie and replays it looks to the server like the person who already passed the check. Help Net Security described the mechanism on August 31 as session theft becoming the new credential theft.

                                      Anthropic spotted the theft in the usage meter. Limits were refilled and drained while the owner was away from Claude, the company wrote.

                                      One Redditor who received the notification traced the infection to a pirated game, per BleepingComputer. That is one machine, and Anthropic has not said what the others ran.

                                      Anthropic’s notification gave no count. The company had not responded by publication to VentureBeat’s questions on how many accounts were affected, whether any Team or Enterprise seats behind SSO were among them, or whether the replayed sessions reached conversation history or connected apps rather than usage alone.

                                      Removing a saved card and refunding charges point to directly billed, self-serve accounts that authenticate through Anthropic’s own login rather than a corporate identity provider. Those include personal subscriptions. Team and self-serve Enterprise organizations can also be card-billed, so the deduction is strong rather than closed.

                                      Bugcrowd CEO Dave Gerry told Axios in early August that his company sent employees nearly a dozen emails saying the OpenClaw agent was not allowed on corporate networks, and employees kept trying to download it anyway. A personal Claude subscription on a managed laptop is the same reflex, and it comes with a card on file. LayerX data in Akamai’s enterprise AI risk report found 47% of enterprise AI conversations run through personal identities, with Claude at 61%.

                                      The pirated game is one vector. In July, attackers hosted a spoofed Claude download page on the claude.ai domain itself through a public Artifact, and a sponsored Bing ad sent employees searching for «Claude Desktop app» straight to it. Huntress documented the campaign, named FakeAgent, after SectopRAT compromised employees at 29 organizations in two days. The artifact collected roughly 7,100 downloads before Anthropic removed it. A separate campaign pushed a fake Claude installer through a spoofed download site earlier in the year, per Malwarebytes. The vector is not piracy. It is enterprise employees searching for the official app on their work machines.

                                      Refunds cover the usage. Nothing covers the connectors

                                      A replayed session inherits everything the legitimate one could reach, and Anthropic has not said whether these did. On a Claude account, that means the conversation history, the files uploaded into projects, and any connectors the owner authorized. Anthropic’s help center states that connectors let Claude retrieve data and take actions inside connected services and that Claude inherits each person’s permissions from the connected service. Read and search operations run without approval. Write actions, including send, reply, forward, share, move, and trash, are approval-gated by default. The exfiltration path is the one that is open. Google Workspace connectors are available to individual Claude accounts, so a personal Pro subscription can hold a live authorization into a Gmail inbox or a Drive folder.

                                      If that inbox is the work inbox, the attacker holding the replayed cookie has a read path into it that the corporate identity provider evaluated once, at the moment the employee clicked allow, and rarely again. On a personal plan, the employee owns that grant. No Claude tenant administrator can sign that account out, and the Workspace or Entra administrator who can pull the underlying grant rarely knows it exists.

                                      Adam Meyers, CrowdStrike’s senior vice president of counter adversary operations, put numbers to the market in an August 6 Axios interview. Criminals have been buying and reselling stolen ChatGPT, Claude and Gemini credentials since ChatGPT took off in late 2022, fed by infostealer malware. CrowdStrike’s 2026 Threat Hunting Report documents one LLMjacking campaign that pushed nearly 200,000 API requests through a compromised cloud account’s AI model access in two minutes.

                                      Meyers drew the line in a July briefing on the report. LLMjacking, in his framing, is stealing the credentials, and cost harvesting is what the buyer does next, manipulating AI resources that belong to the victim «in order to conduct operations and generate massive bills as a byproduct of that,» he said. «So think of this as LLM coin mining.»

                                      One architect refused to build the same exposure into his product

                                      Tom Kleinpeter, co-founder and chief architect at Common Room, described in written answers to VentureBeat why he held his company’s AI agent integrations back through the summer of 2025.

                                      «We rejected local MCP servers early, full stop. That path meant storing a long-lived API key or token on someone’s machine. Steal that credential, and you can impersonate the user, pull their data, or do anything else the token allows, indefinitely, until someone notices and manually revokes it. We weren’t willing to ship that.»

                                      Common Room shipped its first agent integration in October 2025 with Okta’s Auth0 handling authentication, separate read and write scopes, and writes off by default, per Kleinpeter.

                                      An AI coding agent working on Common Room’s own system proposed caching access tokens in plain text in Redis to cut down on repeated authentication calls, he wrote. It worked, and it would have parked live credentials in shared infrastructure had a human reviewer not caught it before it shipped.

                                      Asked what was acceptable in 2024 and a liability now, he named one thing. «Long-lived, broadly scoped API keys. Those made sense when one human operated one trusted system and stayed in the loop. Agents now run across laptops and multiple clients, often with no human watching in real time.»

                                      Okta gave agents governed identities the same week Claude users lost their cookies

                                      Okta made Agent SSO generally available on August 24, registering AI agents as first-class identities in Universal Directory and issuing short-lived, identity-governed tokens in place of stored credentials, according to the company’s announcement. The release names Claude as its example of an agent a security team can now govern natively.

                                      Six days later, Anthropic was signing users out because six stealer families had copied the humans’ Claude cookies. The agents got governed identities. The people using Claude on their own cards did not.

                                      VentureBeat’s July Pulse Research wave on agent security found 63% of 116 enterprises report credential sharing somewhere among their AI agents, and 3% run Okta for AI Agents.

                                      That 3% has a reason, Kayne McGladrey, author of the forthcoming «Cyber Risk is a Myth» and a senior IEEE member, told VentureBeat during a July interview. «It’s only those well-resourced companies that are above the poverty line that have met all the prerequisites,» he said.

                                      The prerequisites he named are the same controls most enterprises still treat as hygiene, not strategic investment.

                                      «If they don’t have their defenses in order, like attack surface management or blast radius containment or basic MFA, that would not be a useful capability or a meaningful spend.»

                                      Anthropic’s position deserves its hearing. The company told users it has no reason to believe the malware is related to Claude, installed through Claude, or tied to anything they did with Claude, and it warned that signing out stops the stolen sessions while leaving the malware in place to steal the next login.

                                      Both hold, and they are the last thing a provider can do, because the infected device belongs to the customer. On a work laptop, the device belongs to the enterprise, and the control that catches Vidar or LummaC2 before it reads a cookie jar is endpoint detection, the control in this story the security team already runs.

                                      The profession’s gap is rarely a missing control anymore, in McGladrey’s framing. «I think we’ve got technical solutions for nearly all of the things that could go wrong, what we don’t have is a way of prioritizing those,» he argued.

                                      The endpoint team owns the machine. The identity team owns an SSO the account never touched, and the AI governance lead wrote a policy the employee routed around the day the card went on file.

                                      Each of those owners is paid to close a different gap. «Engineering is comped on getting product out the door quickly, your internal audit team is comped on checking boxes to meet your compliance goals, and security is comped and sometimes penalized on a lack of incidents,» he argued. «People aren’t doing the wrong thing either. They’re doing what pays their bills on an ongoing basis.»

                                      What security leaders need to do next

                                      Add AI accounts to the infostealer response playbook. When an endpoint alert names a stealer family, treat every AI service session on that machine as compromised, revoke what the enterprise tenant lets you revoke, and have the employee sign out of personal accounts until the machine is clean.

                                      Warn users that the notification itself is now a phishing template. Help Net Security flagged copycat phishing impersonating Anthropic using this campaign as pretext. If the notification lands in a user’s inbox, the next email that looks like it may not be from Anthropic.

                                      Count the personal subscriptions on managed devices. Browser telemetry, CASB logs, and expense reports surface the sessions and the payments.

                                      Stop personal AI accounts from holding OAuth grants into corporate Google Workspace or Microsoft 365. Both platforms let administrators restrict third-party app authorization. Use that gate so a work inbox can only be attached from a tenant the security team can revoke.

                                      Revoke the OAuth grants Claude already holds, not just the Claude session. Signing out of Claude invalidates the stolen session but does not revoke the Google or Microsoft grant Claude was already authorized to use. Check Google’s third-party app authorizations and Microsoft’s enterprise application consents for live grants the sign-out left behind.

                                      Move the heavy users onto the organization-managed tenant. On Team and Enterprise plans, an owner decides whether connectors can be enabled at all.

                                      Put session binding on the renewal agenda. Google shipped Device Bound Session Credentials in Chrome 146 on Windows in April and turned it on by default for Google accounts and Workspace Individual accounts in May, binding each session to a private key in the device’s TPM so a copied cookie cannot be refreshed anywhere else. It covers Chrome on Windows only so far, so the Mac victims in this campaign sit outside it. Ask Anthropic and OpenAI for parity and Google for a coverage date before the next contract signs.

                                      Anthropic sent its notification to individuals. The laptop the cookie came from belongs to whoever manages it, and Vidar and LummaC2 will be back for the next login on the same machine.

                                      ¡No te pierdas las noticias destacadas!

                                      Suscríbete y recibe las historias más importantes del día.

                                      Al suscribirte aceptas nuestros términos y condiciones y política de privacidad.

                                      Infostealers replayed stolen Claude session cookies into paid accounts without ever touching the login page two-factor authentication guards.

                                      The accounts Anthropic flagged were card-billed, self-serve accounts, which is the population no corporate identity provider governs, and no admin console can sign out. Session-cookie replay bypasses SSO as thoroughly as it bypasses 2FA. What SSO provides here is revocation and visibility, not prevention. The company disclosed the campaign in notification emails to affected users, named six stealer families, signed the accounts out, stripped the saved payment methods, and refunded the charges it found.

                                      The burned usage is the small loss. What those sessions could reach is the exposure, and none of it sat behind an identity controlled by an enterprise.

                                      Anthropic told affected users that a bad actor was using common infostealer malware to lift Claude login sessions off their computers and then replaying them to burn the accounts’ usage, according to the notification an affected user posted to Reddit and BleepingComputer reported on August 30.

                                      It named Vidar, LummaC2, StealC, RedLine and Acreed on Windows and Atomic Stealer on a small number of Macs, and it described general-purpose malware that copies browser login cookies along with saved passwords. «Your Claude session was likely one of the many things it collected,» the email said.

                                      A session cookie is the proof that a login already happened

                                      The attack chain runs in one direction, from an infected machine through a stolen cookie past a checkpoint that never fires, and into everything the account can reach.

                                      How a stolen session cookie bypasses 2FA and reaches a personal Claude account’s connector grants into corporate Google Workspace. Credit: VentureBeat made with Gemini

                                      Signing the accounts out worked because a replayed cookie dies with the session it copies.

                                      Two-factor authentication guards the login page. The site then hands the browser a cookie so the user stays signed in, and an attacker who copies that cookie and replays it looks to the server like the person who already passed the check. Help Net Security described the mechanism on August 31 as session theft becoming the new credential theft.

                                      Anthropic spotted the theft in the usage meter. Limits were refilled and drained while the owner was away from Claude, the company wrote.

                                      One Redditor who received the notification traced the infection to a pirated game, per BleepingComputer. That is one machine, and Anthropic has not said what the others ran.

                                      Anthropic’s notification gave no count. The company had not responded by publication to VentureBeat’s questions on how many accounts were affected, whether any Team or Enterprise seats behind SSO were among them, or whether the replayed sessions reached conversation history or connected apps rather than usage alone.

                                      Removing a saved card and refunding charges point to directly billed, self-serve accounts that authenticate through Anthropic’s own login rather than a corporate identity provider. Those include personal subscriptions. Team and self-serve Enterprise organizations can also be card-billed, so the deduction is strong rather than closed.

                                      Bugcrowd CEO Dave Gerry told Axios in early August that his company sent employees nearly a dozen emails saying the OpenClaw agent was not allowed on corporate networks, and employees kept trying to download it anyway. A personal Claude subscription on a managed laptop is the same reflex, and it comes with a card on file. LayerX data in Akamai’s enterprise AI risk report found 47% of enterprise AI conversations run through personal identities, with Claude at 61%.

                                      The pirated game is one vector. In July, attackers hosted a spoofed Claude download page on the claude.ai domain itself through a public Artifact, and a sponsored Bing ad sent employees searching for «Claude Desktop app» straight to it. Huntress documented the campaign, named FakeAgent, after SectopRAT compromised employees at 29 organizations in two days. The artifact collected roughly 7,100 downloads before Anthropic removed it. A separate campaign pushed a fake Claude installer through a spoofed download site earlier in the year, per Malwarebytes. The vector is not piracy. It is enterprise employees searching for the official app on their work machines.

                                      Refunds cover the usage. Nothing covers the connectors

                                      A replayed session inherits everything the legitimate one could reach, and Anthropic has not said whether these did. On a Claude account, that means the conversation history, the files uploaded into projects, and any connectors the owner authorized. Anthropic’s help center states that connectors let Claude retrieve data and take actions inside connected services and that Claude inherits each person’s permissions from the connected service. Read and search operations run without approval. Write actions, including send, reply, forward, share, move, and trash, are approval-gated by default. The exfiltration path is the one that is open. Google Workspace connectors are available to individual Claude accounts, so a personal Pro subscription can hold a live authorization into a Gmail inbox or a Drive folder.

                                      If that inbox is the work inbox, the attacker holding the replayed cookie has a read path into it that the corporate identity provider evaluated once, at the moment the employee clicked allow, and rarely again. On a personal plan, the employee owns that grant. No Claude tenant administrator can sign that account out, and the Workspace or Entra administrator who can pull the underlying grant rarely knows it exists.

                                      Adam Meyers, CrowdStrike’s senior vice president of counter adversary operations, put numbers to the market in an August 6 Axios interview. Criminals have been buying and reselling stolen ChatGPT, Claude and Gemini credentials since ChatGPT took off in late 2022, fed by infostealer malware. CrowdStrike’s 2026 Threat Hunting Report documents one LLMjacking campaign that pushed nearly 200,000 API requests through a compromised cloud account’s AI model access in two minutes.

                                      Meyers drew the line in a July briefing on the report. LLMjacking, in his framing, is stealing the credentials, and cost harvesting is what the buyer does next, manipulating AI resources that belong to the victim «in order to conduct operations and generate massive bills as a byproduct of that,» he said. «So think of this as LLM coin mining.»

                                      One architect refused to build the same exposure into his product

                                      Tom Kleinpeter, co-founder and chief architect at Common Room, described in written answers to VentureBeat why he held his company’s AI agent integrations back through the summer of 2025.

                                      «We rejected local MCP servers early, full stop. That path meant storing a long-lived API key or token on someone’s machine. Steal that credential, and you can impersonate the user, pull their data, or do anything else the token allows, indefinitely, until someone notices and manually revokes it. We weren’t willing to ship that.»

                                      Common Room shipped its first agent integration in October 2025 with Okta’s Auth0 handling authentication, separate read and write scopes, and writes off by default, per Kleinpeter.

                                      An AI coding agent working on Common Room’s own system proposed caching access tokens in plain text in Redis to cut down on repeated authentication calls, he wrote. It worked, and it would have parked live credentials in shared infrastructure had a human reviewer not caught it before it shipped.

                                      Asked what was acceptable in 2024 and a liability now, he named one thing. «Long-lived, broadly scoped API keys. Those made sense when one human operated one trusted system and stayed in the loop. Agents now run across laptops and multiple clients, often with no human watching in real time.»

                                      Okta gave agents governed identities the same week Claude users lost their cookies

                                      Okta made Agent SSO generally available on August 24, registering AI agents as first-class identities in Universal Directory and issuing short-lived, identity-governed tokens in place of stored credentials, according to the company’s announcement. The release names Claude as its example of an agent a security team can now govern natively.

                                      Six days later, Anthropic was signing users out because six stealer families had copied the humans’ Claude cookies. The agents got governed identities. The people using Claude on their own cards did not.

                                      VentureBeat’s July Pulse Research wave on agent security found 63% of 116 enterprises report credential sharing somewhere among their AI agents, and 3% run Okta for AI Agents.

                                      That 3% has a reason, Kayne McGladrey, author of the forthcoming «Cyber Risk is a Myth» and a senior IEEE member, told VentureBeat during a July interview. «It’s only those well-resourced companies that are above the poverty line that have met all the prerequisites,» he said.

                                      The prerequisites he named are the same controls most enterprises still treat as hygiene, not strategic investment.

                                      «If they don’t have their defenses in order, like attack surface management or blast radius containment or basic MFA, that would not be a useful capability or a meaningful spend.»

                                      Anthropic’s position deserves its hearing. The company told users it has no reason to believe the malware is related to Claude, installed through Claude, or tied to anything they did with Claude, and it warned that signing out stops the stolen sessions while leaving the malware in place to steal the next login.

                                      Both hold, and they are the last thing a provider can do, because the infected device belongs to the customer. On a work laptop, the device belongs to the enterprise, and the control that catches Vidar or LummaC2 before it reads a cookie jar is endpoint detection, the control in this story the security team already runs.

                                      The profession’s gap is rarely a missing control anymore, in McGladrey’s framing. «I think we’ve got technical solutions for nearly all of the things that could go wrong, what we don’t have is a way of prioritizing those,» he argued.

                                      The endpoint team owns the machine. The identity team owns an SSO the account never touched, and the AI governance lead wrote a policy the employee routed around the day the card went on file.

                                      Each of those owners is paid to close a different gap. «Engineering is comped on getting product out the door quickly, your internal audit team is comped on checking boxes to meet your compliance goals, and security is comped and sometimes penalized on a lack of incidents,» he argued. «People aren’t doing the wrong thing either. They’re doing what pays their bills on an ongoing basis.»

                                      What security leaders need to do next

                                      Add AI accounts to the infostealer response playbook. When an endpoint alert names a stealer family, treat every AI service session on that machine as compromised, revoke what the enterprise tenant lets you revoke, and have the employee sign out of personal accounts until the machine is clean.

                                      Warn users that the notification itself is now a phishing template. Help Net Security flagged copycat phishing impersonating Anthropic using this campaign as pretext. If the notification lands in a user’s inbox, the next email that looks like it may not be from Anthropic.

                                      Count the personal subscriptions on managed devices. Browser telemetry, CASB logs, and expense reports surface the sessions and the payments.

                                      Stop personal AI accounts from holding OAuth grants into corporate Google Workspace or Microsoft 365. Both platforms let administrators restrict third-party app authorization. Use that gate so a work inbox can only be attached from a tenant the security team can revoke.

                                      Revoke the OAuth grants Claude already holds, not just the Claude session. Signing out of Claude invalidates the stolen session but does not revoke the Google or Microsoft grant Claude was already authorized to use. Check Google’s third-party app authorizations and Microsoft’s enterprise application consents for live grants the sign-out left behind.

                                      Move the heavy users onto the organization-managed tenant. On Team and Enterprise plans, an owner decides whether connectors can be enabled at all.

                                      Put session binding on the renewal agenda. Google shipped Device Bound Session Credentials in Chrome 146 on Windows in April and turned it on by default for Google accounts and Workspace Individual accounts in May, binding each session to a private key in the device’s TPM so a copied cookie cannot be refreshed anywhere else. It covers Chrome on Windows only so far, so the Mac victims in this campaign sit outside it. Ask Anthropic and OpenAI for parity and Google for a coverage date before the next contract signs.

                                      Anthropic sent its notification to individuals. The laptop the cookie came from belongs to whoever manages it, and Vidar and LummaC2 will be back for the next login on the same machine.

                                      Tour Cayo Arena Día Feriado Tour Cayo Arena Día Feriado Tour Cayo Arena Día Feriado

                                      Infostealers replayed stolen Claude session cookies into paid accounts without ever touching the login page two-factor authentication guards.

                                      The accounts Anthropic flagged were card-billed, self-serve accounts, which is the population no corporate identity provider governs, and no admin console can sign out. Session-cookie replay bypasses SSO as thoroughly as it bypasses 2FA. What SSO provides here is revocation and visibility, not prevention. The company disclosed the campaign in notification emails to affected users, named six stealer families, signed the accounts out, stripped the saved payment methods, and refunded the charges it found.

                                      The burned usage is the small loss. What those sessions could reach is the exposure, and none of it sat behind an identity controlled by an enterprise.

                                      Anthropic told affected users that a bad actor was using common infostealer malware to lift Claude login sessions off their computers and then replaying them to burn the accounts’ usage, according to the notification an affected user posted to Reddit and BleepingComputer reported on August 30.

                                      It named Vidar, LummaC2, StealC, RedLine and Acreed on Windows and Atomic Stealer on a small number of Macs, and it described general-purpose malware that copies browser login cookies along with saved passwords. «Your Claude session was likely one of the many things it collected,» the email said.

                                      A session cookie is the proof that a login already happened

                                      The attack chain runs in one direction, from an infected machine through a stolen cookie past a checkpoint that never fires, and into everything the account can reach.

                                      How a stolen session cookie bypasses 2FA and reaches a personal Claude account’s connector grants into corporate Google Workspace. Credit: VentureBeat made with Gemini

                                      Signing the accounts out worked because a replayed cookie dies with the session it copies.

                                      Two-factor authentication guards the login page. The site then hands the browser a cookie so the user stays signed in, and an attacker who copies that cookie and replays it looks to the server like the person who already passed the check. Help Net Security described the mechanism on August 31 as session theft becoming the new credential theft.

                                      Anthropic spotted the theft in the usage meter. Limits were refilled and drained while the owner was away from Claude, the company wrote.

                                      One Redditor who received the notification traced the infection to a pirated game, per BleepingComputer. That is one machine, and Anthropic has not said what the others ran.

                                      Anthropic’s notification gave no count. The company had not responded by publication to VentureBeat’s questions on how many accounts were affected, whether any Team or Enterprise seats behind SSO were among them, or whether the replayed sessions reached conversation history or connected apps rather than usage alone.

                                      Removing a saved card and refunding charges point to directly billed, self-serve accounts that authenticate through Anthropic’s own login rather than a corporate identity provider. Those include personal subscriptions. Team and self-serve Enterprise organizations can also be card-billed, so the deduction is strong rather than closed.

                                      Bugcrowd CEO Dave Gerry told Axios in early August that his company sent employees nearly a dozen emails saying the OpenClaw agent was not allowed on corporate networks, and employees kept trying to download it anyway. A personal Claude subscription on a managed laptop is the same reflex, and it comes with a card on file. LayerX data in Akamai’s enterprise AI risk report found 47% of enterprise AI conversations run through personal identities, with Claude at 61%.

                                      The pirated game is one vector. In July, attackers hosted a spoofed Claude download page on the claude.ai domain itself through a public Artifact, and a sponsored Bing ad sent employees searching for «Claude Desktop app» straight to it. Huntress documented the campaign, named FakeAgent, after SectopRAT compromised employees at 29 organizations in two days. The artifact collected roughly 7,100 downloads before Anthropic removed it. A separate campaign pushed a fake Claude installer through a spoofed download site earlier in the year, per Malwarebytes. The vector is not piracy. It is enterprise employees searching for the official app on their work machines.

                                      Refunds cover the usage. Nothing covers the connectors

                                      A replayed session inherits everything the legitimate one could reach, and Anthropic has not said whether these did. On a Claude account, that means the conversation history, the files uploaded into projects, and any connectors the owner authorized. Anthropic’s help center states that connectors let Claude retrieve data and take actions inside connected services and that Claude inherits each person’s permissions from the connected service. Read and search operations run without approval. Write actions, including send, reply, forward, share, move, and trash, are approval-gated by default. The exfiltration path is the one that is open. Google Workspace connectors are available to individual Claude accounts, so a personal Pro subscription can hold a live authorization into a Gmail inbox or a Drive folder.

                                      If that inbox is the work inbox, the attacker holding the replayed cookie has a read path into it that the corporate identity provider evaluated once, at the moment the employee clicked allow, and rarely again. On a personal plan, the employee owns that grant. No Claude tenant administrator can sign that account out, and the Workspace or Entra administrator who can pull the underlying grant rarely knows it exists.

                                      Adam Meyers, CrowdStrike’s senior vice president of counter adversary operations, put numbers to the market in an August 6 Axios interview. Criminals have been buying and reselling stolen ChatGPT, Claude and Gemini credentials since ChatGPT took off in late 2022, fed by infostealer malware. CrowdStrike’s 2026 Threat Hunting Report documents one LLMjacking campaign that pushed nearly 200,000 API requests through a compromised cloud account’s AI model access in two minutes.

                                      Meyers drew the line in a July briefing on the report. LLMjacking, in his framing, is stealing the credentials, and cost harvesting is what the buyer does next, manipulating AI resources that belong to the victim «in order to conduct operations and generate massive bills as a byproduct of that,» he said. «So think of this as LLM coin mining.»

                                      One architect refused to build the same exposure into his product

                                      Tom Kleinpeter, co-founder and chief architect at Common Room, described in written answers to VentureBeat why he held his company’s AI agent integrations back through the summer of 2025.

                                      «We rejected local MCP servers early, full stop. That path meant storing a long-lived API key or token on someone’s machine. Steal that credential, and you can impersonate the user, pull their data, or do anything else the token allows, indefinitely, until someone notices and manually revokes it. We weren’t willing to ship that.»

                                      Common Room shipped its first agent integration in October 2025 with Okta’s Auth0 handling authentication, separate read and write scopes, and writes off by default, per Kleinpeter.

                                      An AI coding agent working on Common Room’s own system proposed caching access tokens in plain text in Redis to cut down on repeated authentication calls, he wrote. It worked, and it would have parked live credentials in shared infrastructure had a human reviewer not caught it before it shipped.

                                      Asked what was acceptable in 2024 and a liability now, he named one thing. «Long-lived, broadly scoped API keys. Those made sense when one human operated one trusted system and stayed in the loop. Agents now run across laptops and multiple clients, often with no human watching in real time.»

                                      Okta gave agents governed identities the same week Claude users lost their cookies

                                      Okta made Agent SSO generally available on August 24, registering AI agents as first-class identities in Universal Directory and issuing short-lived, identity-governed tokens in place of stored credentials, according to the company’s announcement. The release names Claude as its example of an agent a security team can now govern natively.

                                      Six days later, Anthropic was signing users out because six stealer families had copied the humans’ Claude cookies. The agents got governed identities. The people using Claude on their own cards did not.

                                      VentureBeat’s July Pulse Research wave on agent security found 63% of 116 enterprises report credential sharing somewhere among their AI agents, and 3% run Okta for AI Agents.

                                      That 3% has a reason, Kayne McGladrey, author of the forthcoming «Cyber Risk is a Myth» and a senior IEEE member, told VentureBeat during a July interview. «It’s only those well-resourced companies that are above the poverty line that have met all the prerequisites,» he said.

                                      The prerequisites he named are the same controls most enterprises still treat as hygiene, not strategic investment.

                                      «If they don’t have their defenses in order, like attack surface management or blast radius containment or basic MFA, that would not be a useful capability or a meaningful spend.»

                                      Anthropic’s position deserves its hearing. The company told users it has no reason to believe the malware is related to Claude, installed through Claude, or tied to anything they did with Claude, and it warned that signing out stops the stolen sessions while leaving the malware in place to steal the next login.

                                      Both hold, and they are the last thing a provider can do, because the infected device belongs to the customer. On a work laptop, the device belongs to the enterprise, and the control that catches Vidar or LummaC2 before it reads a cookie jar is endpoint detection, the control in this story the security team already runs.

                                      The profession’s gap is rarely a missing control anymore, in McGladrey’s framing. «I think we’ve got technical solutions for nearly all of the things that could go wrong, what we don’t have is a way of prioritizing those,» he argued.

                                      The endpoint team owns the machine. The identity team owns an SSO the account never touched, and the AI governance lead wrote a policy the employee routed around the day the card went on file.

                                      Each of those owners is paid to close a different gap. «Engineering is comped on getting product out the door quickly, your internal audit team is comped on checking boxes to meet your compliance goals, and security is comped and sometimes penalized on a lack of incidents,» he argued. «People aren’t doing the wrong thing either. They’re doing what pays their bills on an ongoing basis.»

                                      What security leaders need to do next

                                      Add AI accounts to the infostealer response playbook. When an endpoint alert names a stealer family, treat every AI service session on that machine as compromised, revoke what the enterprise tenant lets you revoke, and have the employee sign out of personal accounts until the machine is clean.

                                      Warn users that the notification itself is now a phishing template. Help Net Security flagged copycat phishing impersonating Anthropic using this campaign as pretext. If the notification lands in a user’s inbox, the next email that looks like it may not be from Anthropic.

                                      Count the personal subscriptions on managed devices. Browser telemetry, CASB logs, and expense reports surface the sessions and the payments.

                                      Stop personal AI accounts from holding OAuth grants into corporate Google Workspace or Microsoft 365. Both platforms let administrators restrict third-party app authorization. Use that gate so a work inbox can only be attached from a tenant the security team can revoke.

                                      Revoke the OAuth grants Claude already holds, not just the Claude session. Signing out of Claude invalidates the stolen session but does not revoke the Google or Microsoft grant Claude was already authorized to use. Check Google’s third-party app authorizations and Microsoft’s enterprise application consents for live grants the sign-out left behind.

                                      Move the heavy users onto the organization-managed tenant. On Team and Enterprise plans, an owner decides whether connectors can be enabled at all.

                                      Put session binding on the renewal agenda. Google shipped Device Bound Session Credentials in Chrome 146 on Windows in April and turned it on by default for Google accounts and Workspace Individual accounts in May, binding each session to a private key in the device’s TPM so a copied cookie cannot be refreshed anywhere else. It covers Chrome on Windows only so far, so the Mac victims in this campaign sit outside it. Ask Anthropic and OpenAI for parity and Google for a coverage date before the next contract signs.

                                      Anthropic sent its notification to individuals. The laptop the cookie came from belongs to whoever manages it, and Vidar and LummaC2 will be back for the next login on the same machine.

                                      Tours Colombia Todo el año Tours Colombia Todo el año Tours Colombia Todo el año

                                      Infostealers replayed stolen Claude session cookies into paid accounts without ever touching the login page two-factor authentication guards.

                                      The accounts Anthropic flagged were card-billed, self-serve accounts, which is the population no corporate identity provider governs, and no admin console can sign out. Session-cookie replay bypasses SSO as thoroughly as it bypasses 2FA. What SSO provides here is revocation and visibility, not prevention. The company disclosed the campaign in notification emails to affected users, named six stealer families, signed the accounts out, stripped the saved payment methods, and refunded the charges it found.

                                      The burned usage is the small loss. What those sessions could reach is the exposure, and none of it sat behind an identity controlled by an enterprise.

                                      Anthropic told affected users that a bad actor was using common infostealer malware to lift Claude login sessions off their computers and then replaying them to burn the accounts’ usage, according to the notification an affected user posted to Reddit and BleepingComputer reported on August 30.

                                      It named Vidar, LummaC2, StealC, RedLine and Acreed on Windows and Atomic Stealer on a small number of Macs, and it described general-purpose malware that copies browser login cookies along with saved passwords. «Your Claude session was likely one of the many things it collected,» the email said.

                                      A session cookie is the proof that a login already happened

                                      The attack chain runs in one direction, from an infected machine through a stolen cookie past a checkpoint that never fires, and into everything the account can reach.

                                      How a stolen session cookie bypasses 2FA and reaches a personal Claude account’s connector grants into corporate Google Workspace. Credit: VentureBeat made with Gemini

                                      Signing the accounts out worked because a replayed cookie dies with the session it copies.

                                      Two-factor authentication guards the login page. The site then hands the browser a cookie so the user stays signed in, and an attacker who copies that cookie and replays it looks to the server like the person who already passed the check. Help Net Security described the mechanism on August 31 as session theft becoming the new credential theft.

                                      Anthropic spotted the theft in the usage meter. Limits were refilled and drained while the owner was away from Claude, the company wrote.

                                      One Redditor who received the notification traced the infection to a pirated game, per BleepingComputer. That is one machine, and Anthropic has not said what the others ran.

                                      Anthropic’s notification gave no count. The company had not responded by publication to VentureBeat’s questions on how many accounts were affected, whether any Team or Enterprise seats behind SSO were among them, or whether the replayed sessions reached conversation history or connected apps rather than usage alone.

                                      Removing a saved card and refunding charges point to directly billed, self-serve accounts that authenticate through Anthropic’s own login rather than a corporate identity provider. Those include personal subscriptions. Team and self-serve Enterprise organizations can also be card-billed, so the deduction is strong rather than closed.

                                      Bugcrowd CEO Dave Gerry told Axios in early August that his company sent employees nearly a dozen emails saying the OpenClaw agent was not allowed on corporate networks, and employees kept trying to download it anyway. A personal Claude subscription on a managed laptop is the same reflex, and it comes with a card on file. LayerX data in Akamai’s enterprise AI risk report found 47% of enterprise AI conversations run through personal identities, with Claude at 61%.

                                      The pirated game is one vector. In July, attackers hosted a spoofed Claude download page on the claude.ai domain itself through a public Artifact, and a sponsored Bing ad sent employees searching for «Claude Desktop app» straight to it. Huntress documented the campaign, named FakeAgent, after SectopRAT compromised employees at 29 organizations in two days. The artifact collected roughly 7,100 downloads before Anthropic removed it. A separate campaign pushed a fake Claude installer through a spoofed download site earlier in the year, per Malwarebytes. The vector is not piracy. It is enterprise employees searching for the official app on their work machines.

                                      Refunds cover the usage. Nothing covers the connectors

                                      A replayed session inherits everything the legitimate one could reach, and Anthropic has not said whether these did. On a Claude account, that means the conversation history, the files uploaded into projects, and any connectors the owner authorized. Anthropic’s help center states that connectors let Claude retrieve data and take actions inside connected services and that Claude inherits each person’s permissions from the connected service. Read and search operations run without approval. Write actions, including send, reply, forward, share, move, and trash, are approval-gated by default. The exfiltration path is the one that is open. Google Workspace connectors are available to individual Claude accounts, so a personal Pro subscription can hold a live authorization into a Gmail inbox or a Drive folder.

                                      If that inbox is the work inbox, the attacker holding the replayed cookie has a read path into it that the corporate identity provider evaluated once, at the moment the employee clicked allow, and rarely again. On a personal plan, the employee owns that grant. No Claude tenant administrator can sign that account out, and the Workspace or Entra administrator who can pull the underlying grant rarely knows it exists.

                                      Adam Meyers, CrowdStrike’s senior vice president of counter adversary operations, put numbers to the market in an August 6 Axios interview. Criminals have been buying and reselling stolen ChatGPT, Claude and Gemini credentials since ChatGPT took off in late 2022, fed by infostealer malware. CrowdStrike’s 2026 Threat Hunting Report documents one LLMjacking campaign that pushed nearly 200,000 API requests through a compromised cloud account’s AI model access in two minutes.

                                      Meyers drew the line in a July briefing on the report. LLMjacking, in his framing, is stealing the credentials, and cost harvesting is what the buyer does next, manipulating AI resources that belong to the victim «in order to conduct operations and generate massive bills as a byproduct of that,» he said. «So think of this as LLM coin mining.»

                                      One architect refused to build the same exposure into his product

                                      Tom Kleinpeter, co-founder and chief architect at Common Room, described in written answers to VentureBeat why he held his company’s AI agent integrations back through the summer of 2025.

                                      «We rejected local MCP servers early, full stop. That path meant storing a long-lived API key or token on someone’s machine. Steal that credential, and you can impersonate the user, pull their data, or do anything else the token allows, indefinitely, until someone notices and manually revokes it. We weren’t willing to ship that.»

                                      Common Room shipped its first agent integration in October 2025 with Okta’s Auth0 handling authentication, separate read and write scopes, and writes off by default, per Kleinpeter.

                                      An AI coding agent working on Common Room’s own system proposed caching access tokens in plain text in Redis to cut down on repeated authentication calls, he wrote. It worked, and it would have parked live credentials in shared infrastructure had a human reviewer not caught it before it shipped.

                                      Asked what was acceptable in 2024 and a liability now, he named one thing. «Long-lived, broadly scoped API keys. Those made sense when one human operated one trusted system and stayed in the loop. Agents now run across laptops and multiple clients, often with no human watching in real time.»

                                      Okta gave agents governed identities the same week Claude users lost their cookies

                                      Okta made Agent SSO generally available on August 24, registering AI agents as first-class identities in Universal Directory and issuing short-lived, identity-governed tokens in place of stored credentials, according to the company’s announcement. The release names Claude as its example of an agent a security team can now govern natively.

                                      Six days later, Anthropic was signing users out because six stealer families had copied the humans’ Claude cookies. The agents got governed identities. The people using Claude on their own cards did not.

                                      VentureBeat’s July Pulse Research wave on agent security found 63% of 116 enterprises report credential sharing somewhere among their AI agents, and 3% run Okta for AI Agents.

                                      That 3% has a reason, Kayne McGladrey, author of the forthcoming «Cyber Risk is a Myth» and a senior IEEE member, told VentureBeat during a July interview. «It’s only those well-resourced companies that are above the poverty line that have met all the prerequisites,» he said.

                                      The prerequisites he named are the same controls most enterprises still treat as hygiene, not strategic investment.

                                      «If they don’t have their defenses in order, like attack surface management or blast radius containment or basic MFA, that would not be a useful capability or a meaningful spend.»

                                      Anthropic’s position deserves its hearing. The company told users it has no reason to believe the malware is related to Claude, installed through Claude, or tied to anything they did with Claude, and it warned that signing out stops the stolen sessions while leaving the malware in place to steal the next login.

                                      Both hold, and they are the last thing a provider can do, because the infected device belongs to the customer. On a work laptop, the device belongs to the enterprise, and the control that catches Vidar or LummaC2 before it reads a cookie jar is endpoint detection, the control in this story the security team already runs.

                                      The profession’s gap is rarely a missing control anymore, in McGladrey’s framing. «I think we’ve got technical solutions for nearly all of the things that could go wrong, what we don’t have is a way of prioritizing those,» he argued.

                                      The endpoint team owns the machine. The identity team owns an SSO the account never touched, and the AI governance lead wrote a policy the employee routed around the day the card went on file.

                                      Each of those owners is paid to close a different gap. «Engineering is comped on getting product out the door quickly, your internal audit team is comped on checking boxes to meet your compliance goals, and security is comped and sometimes penalized on a lack of incidents,» he argued. «People aren’t doing the wrong thing either. They’re doing what pays their bills on an ongoing basis.»

                                      What security leaders need to do next

                                      Add AI accounts to the infostealer response playbook. When an endpoint alert names a stealer family, treat every AI service session on that machine as compromised, revoke what the enterprise tenant lets you revoke, and have the employee sign out of personal accounts until the machine is clean.

                                      Warn users that the notification itself is now a phishing template. Help Net Security flagged copycat phishing impersonating Anthropic using this campaign as pretext. If the notification lands in a user’s inbox, the next email that looks like it may not be from Anthropic.

                                      Count the personal subscriptions on managed devices. Browser telemetry, CASB logs, and expense reports surface the sessions and the payments.

                                      Stop personal AI accounts from holding OAuth grants into corporate Google Workspace or Microsoft 365. Both platforms let administrators restrict third-party app authorization. Use that gate so a work inbox can only be attached from a tenant the security team can revoke.

                                      Revoke the OAuth grants Claude already holds, not just the Claude session. Signing out of Claude invalidates the stolen session but does not revoke the Google or Microsoft grant Claude was already authorized to use. Check Google’s third-party app authorizations and Microsoft’s enterprise application consents for live grants the sign-out left behind.

                                      Move the heavy users onto the organization-managed tenant. On Team and Enterprise plans, an owner decides whether connectors can be enabled at all.

                                      Put session binding on the renewal agenda. Google shipped Device Bound Session Credentials in Chrome 146 on Windows in April and turned it on by default for Google accounts and Workspace Individual accounts in May, binding each session to a private key in the device’s TPM so a copied cookie cannot be refreshed anywhere else. It covers Chrome on Windows only so far, so the Mac victims in this campaign sit outside it. Ask Anthropic and OpenAI for parity and Google for a coverage date before the next contract signs.

                                      Anthropic sent its notification to individuals. The laptop the cookie came from belongs to whoever manages it, and Vidar and LummaC2 will be back for the next login on the same machine.

                                      Tour Cayo Arena Día Feriado Tour Cayo Arena Día Feriado Tour Cayo Arena Día Feriado

                                      Infostealers replayed stolen Claude session cookies into paid accounts without ever touching the login page two-factor authentication guards.

                                      The accounts Anthropic flagged were card-billed, self-serve accounts, which is the population no corporate identity provider governs, and no admin console can sign out. Session-cookie replay bypasses SSO as thoroughly as it bypasses 2FA. What SSO provides here is revocation and visibility, not prevention. The company disclosed the campaign in notification emails to affected users, named six stealer families, signed the accounts out, stripped the saved payment methods, and refunded the charges it found.

                                      The burned usage is the small loss. What those sessions could reach is the exposure, and none of it sat behind an identity controlled by an enterprise.

                                      Anthropic told affected users that a bad actor was using common infostealer malware to lift Claude login sessions off their computers and then replaying them to burn the accounts’ usage, according to the notification an affected user posted to Reddit and BleepingComputer reported on August 30.

                                      It named Vidar, LummaC2, StealC, RedLine and Acreed on Windows and Atomic Stealer on a small number of Macs, and it described general-purpose malware that copies browser login cookies along with saved passwords. «Your Claude session was likely one of the many things it collected,» the email said.

                                      A session cookie is the proof that a login already happened

                                      The attack chain runs in one direction, from an infected machine through a stolen cookie past a checkpoint that never fires, and into everything the account can reach.

                                      How a stolen session cookie bypasses 2FA and reaches a personal Claude account’s connector grants into corporate Google Workspace. Credit: VentureBeat made with Gemini

                                      Signing the accounts out worked because a replayed cookie dies with the session it copies.

                                      Two-factor authentication guards the login page. The site then hands the browser a cookie so the user stays signed in, and an attacker who copies that cookie and replays it looks to the server like the person who already passed the check. Help Net Security described the mechanism on August 31 as session theft becoming the new credential theft.

                                      Anthropic spotted the theft in the usage meter. Limits were refilled and drained while the owner was away from Claude, the company wrote.

                                      One Redditor who received the notification traced the infection to a pirated game, per BleepingComputer. That is one machine, and Anthropic has not said what the others ran.

                                      Anthropic’s notification gave no count. The company had not responded by publication to VentureBeat’s questions on how many accounts were affected, whether any Team or Enterprise seats behind SSO were among them, or whether the replayed sessions reached conversation history or connected apps rather than usage alone.

                                      Removing a saved card and refunding charges point to directly billed, self-serve accounts that authenticate through Anthropic’s own login rather than a corporate identity provider. Those include personal subscriptions. Team and self-serve Enterprise organizations can also be card-billed, so the deduction is strong rather than closed.

                                      Bugcrowd CEO Dave Gerry told Axios in early August that his company sent employees nearly a dozen emails saying the OpenClaw agent was not allowed on corporate networks, and employees kept trying to download it anyway. A personal Claude subscription on a managed laptop is the same reflex, and it comes with a card on file. LayerX data in Akamai’s enterprise AI risk report found 47% of enterprise AI conversations run through personal identities, with Claude at 61%.

                                      The pirated game is one vector. In July, attackers hosted a spoofed Claude download page on the claude.ai domain itself through a public Artifact, and a sponsored Bing ad sent employees searching for «Claude Desktop app» straight to it. Huntress documented the campaign, named FakeAgent, after SectopRAT compromised employees at 29 organizations in two days. The artifact collected roughly 7,100 downloads before Anthropic removed it. A separate campaign pushed a fake Claude installer through a spoofed download site earlier in the year, per Malwarebytes. The vector is not piracy. It is enterprise employees searching for the official app on their work machines.

                                      Refunds cover the usage. Nothing covers the connectors

                                      A replayed session inherits everything the legitimate one could reach, and Anthropic has not said whether these did. On a Claude account, that means the conversation history, the files uploaded into projects, and any connectors the owner authorized. Anthropic’s help center states that connectors let Claude retrieve data and take actions inside connected services and that Claude inherits each person’s permissions from the connected service. Read and search operations run without approval. Write actions, including send, reply, forward, share, move, and trash, are approval-gated by default. The exfiltration path is the one that is open. Google Workspace connectors are available to individual Claude accounts, so a personal Pro subscription can hold a live authorization into a Gmail inbox or a Drive folder.

                                      If that inbox is the work inbox, the attacker holding the replayed cookie has a read path into it that the corporate identity provider evaluated once, at the moment the employee clicked allow, and rarely again. On a personal plan, the employee owns that grant. No Claude tenant administrator can sign that account out, and the Workspace or Entra administrator who can pull the underlying grant rarely knows it exists.

                                      Adam Meyers, CrowdStrike’s senior vice president of counter adversary operations, put numbers to the market in an August 6 Axios interview. Criminals have been buying and reselling stolen ChatGPT, Claude and Gemini credentials since ChatGPT took off in late 2022, fed by infostealer malware. CrowdStrike’s 2026 Threat Hunting Report documents one LLMjacking campaign that pushed nearly 200,000 API requests through a compromised cloud account’s AI model access in two minutes.

                                      Meyers drew the line in a July briefing on the report. LLMjacking, in his framing, is stealing the credentials, and cost harvesting is what the buyer does next, manipulating AI resources that belong to the victim «in order to conduct operations and generate massive bills as a byproduct of that,» he said. «So think of this as LLM coin mining.»

                                      One architect refused to build the same exposure into his product

                                      Tom Kleinpeter, co-founder and chief architect at Common Room, described in written answers to VentureBeat why he held his company’s AI agent integrations back through the summer of 2025.

                                      «We rejected local MCP servers early, full stop. That path meant storing a long-lived API key or token on someone’s machine. Steal that credential, and you can impersonate the user, pull their data, or do anything else the token allows, indefinitely, until someone notices and manually revokes it. We weren’t willing to ship that.»

                                      Common Room shipped its first agent integration in October 2025 with Okta’s Auth0 handling authentication, separate read and write scopes, and writes off by default, per Kleinpeter.

                                      An AI coding agent working on Common Room’s own system proposed caching access tokens in plain text in Redis to cut down on repeated authentication calls, he wrote. It worked, and it would have parked live credentials in shared infrastructure had a human reviewer not caught it before it shipped.

                                      Asked what was acceptable in 2024 and a liability now, he named one thing. «Long-lived, broadly scoped API keys. Those made sense when one human operated one trusted system and stayed in the loop. Agents now run across laptops and multiple clients, often with no human watching in real time.»

                                      Okta gave agents governed identities the same week Claude users lost their cookies

                                      Okta made Agent SSO generally available on August 24, registering AI agents as first-class identities in Universal Directory and issuing short-lived, identity-governed tokens in place of stored credentials, according to the company’s announcement. The release names Claude as its example of an agent a security team can now govern natively.

                                      Six days later, Anthropic was signing users out because six stealer families had copied the humans’ Claude cookies. The agents got governed identities. The people using Claude on their own cards did not.

                                      VentureBeat’s July Pulse Research wave on agent security found 63% of 116 enterprises report credential sharing somewhere among their AI agents, and 3% run Okta for AI Agents.

                                      That 3% has a reason, Kayne McGladrey, author of the forthcoming «Cyber Risk is a Myth» and a senior IEEE member, told VentureBeat during a July interview. «It’s only those well-resourced companies that are above the poverty line that have met all the prerequisites,» he said.

                                      The prerequisites he named are the same controls most enterprises still treat as hygiene, not strategic investment.

                                      «If they don’t have their defenses in order, like attack surface management or blast radius containment or basic MFA, that would not be a useful capability or a meaningful spend.»

                                      Anthropic’s position deserves its hearing. The company told users it has no reason to believe the malware is related to Claude, installed through Claude, or tied to anything they did with Claude, and it warned that signing out stops the stolen sessions while leaving the malware in place to steal the next login.

                                      Both hold, and they are the last thing a provider can do, because the infected device belongs to the customer. On a work laptop, the device belongs to the enterprise, and the control that catches Vidar or LummaC2 before it reads a cookie jar is endpoint detection, the control in this story the security team already runs.

                                      The profession’s gap is rarely a missing control anymore, in McGladrey’s framing. «I think we’ve got technical solutions for nearly all of the things that could go wrong, what we don’t have is a way of prioritizing those,» he argued.

                                      The endpoint team owns the machine. The identity team owns an SSO the account never touched, and the AI governance lead wrote a policy the employee routed around the day the card went on file.

                                      Each of those owners is paid to close a different gap. «Engineering is comped on getting product out the door quickly, your internal audit team is comped on checking boxes to meet your compliance goals, and security is comped and sometimes penalized on a lack of incidents,» he argued. «People aren’t doing the wrong thing either. They’re doing what pays their bills on an ongoing basis.»

                                      What security leaders need to do next

                                      Add AI accounts to the infostealer response playbook. When an endpoint alert names a stealer family, treat every AI service session on that machine as compromised, revoke what the enterprise tenant lets you revoke, and have the employee sign out of personal accounts until the machine is clean.

                                      Warn users that the notification itself is now a phishing template. Help Net Security flagged copycat phishing impersonating Anthropic using this campaign as pretext. If the notification lands in a user’s inbox, the next email that looks like it may not be from Anthropic.

                                      Count the personal subscriptions on managed devices. Browser telemetry, CASB logs, and expense reports surface the sessions and the payments.

                                      Stop personal AI accounts from holding OAuth grants into corporate Google Workspace or Microsoft 365. Both platforms let administrators restrict third-party app authorization. Use that gate so a work inbox can only be attached from a tenant the security team can revoke.

                                      Revoke the OAuth grants Claude already holds, not just the Claude session. Signing out of Claude invalidates the stolen session but does not revoke the Google or Microsoft grant Claude was already authorized to use. Check Google’s third-party app authorizations and Microsoft’s enterprise application consents for live grants the sign-out left behind.

                                      Move the heavy users onto the organization-managed tenant. On Team and Enterprise plans, an owner decides whether connectors can be enabled at all.

                                      Put session binding on the renewal agenda. Google shipped Device Bound Session Credentials in Chrome 146 on Windows in April and turned it on by default for Google accounts and Workspace Individual accounts in May, binding each session to a private key in the device’s TPM so a copied cookie cannot be refreshed anywhere else. It covers Chrome on Windows only so far, so the Mac victims in this campaign sit outside it. Ask Anthropic and OpenAI for parity and Google for a coverage date before the next contract signs.

                                      Anthropic sent its notification to individuals. The laptop the cookie came from belongs to whoever manages it, and Vidar and LummaC2 will be back for the next login on the same machine.

                                      ● Canal oficial · Gratis
                                      ¡Recibe las noticias antes que nadie!
                                      Únete a nuestro canal de WhatsApp y mantente informado al instante, sin spam.
                                      Unirme ahora →
                                      ● Noticias al instante ● Cobertura nacional ● Periodismo real Despertar Matinal
                                      — Redacción Despertar Matinal

                                      — Redacción Despertar Matinal

                                      Programa radial que te conecta con la información desde temprano en la mañana.

                                      Next Post
                                      Adriana Baravalle se reunió con el CEO de NVIDIA y un funcionario de Trump en el marco del G20

                                      Adriana Baravalle se reunió con el CEO de NVIDIA y un funcionario de Trump en el marco del G20

                                      Deja una respuesta Cancelar la respuesta

                                      Tu dirección de correo electrónico no será publicada. Los campos obligatorios están marcados con *

                                      Canal de WhatsApp

                                      WhatsApp logo WhatsApp

                                      Canal · Despertar Matinal

                                      Únete a nuestro
                                      Canal

                                      Seguir ahora

                                      El clima

                                      Canal de YouTube

                                      YouTube

                                      Canal · Despertar Matinal

                                      Mira nuestro
                                      Canal

                                      Ver ahora

                                      Escúchanos en Spotify

                                      Spotify

                                      Podcast · Despertar Matinal

                                      Escucha nuestro
                                      Podcast

                                      Escuchar ahora

                                      Noticias Populares

                                      • Convocan a jóvenes bachilleres para 1000 plazas laborales de aspirantes a agentes de VTP

                                        Convocan a jóvenes bachilleres para 1000 plazas laborales de aspirantes a agentes de VTP

                                        0 shares
                                        Share 0 Tweet 0
                                      • El régimen comunista chino intensifica el cerco militar sobre Taiwán mientras prepara nuevas tácticas de combate

                                        0 shares
                                        Share 0 Tweet 0
                                      • EU and Nato vow to step up pressure on Russia after ‘new escalation’ in Leipzig

                                        0 shares
                                        Share 0 Tweet 0
                                      • Jordania interceptó numerosos misiles lanzados desde Irán que se dirigían hacia una base de EEUU

                                        0 shares
                                        Share 0 Tweet 0
                                      • Gobierno reporta crecimiento de la inversión extranjera y las exportaciones dominicanas

                                        0 shares
                                        Share 0 Tweet 0

                                      Medio digital independiente con análisis, opinión y periodismo responsable desde República Dominicana.

                                      Secciones populares

                                      • Política
                                      • Economía & Negocios
                                      • Justicia
                                      • Turismo
                                      • Tecnología
                                      • Entretenimiento
                                      • Mundo
                                      • Cine y Series
                                      • Música
                                      • Moda

                                      Contenido

                                      • Titulares del Día
                                      • Mundo
                                      • Nacionales
                                      • Política
                                      • Deportes
                                      • Economía & Negocios
                                      • Ciencia
                                      • Entretenimiento
                                      • Podcast
                                      • Opinión
                                      • Despertar Matinal TV
                                      • Editoriales

                                      Corporativo

                                      • Sobre nosotros
                                      • Publicidad
                                      • Sala de prensa
                                      • Contacto
                                      • Política de Privacidad
                                      • Eliminación de Datos

                                      Boletines

                                      Suscríbete a nuestro boletín
                                      Recibe las noticias más importantes cada mañana.

                                      • Nosotros
                                      • Publicidad
                                      • Trabaja con nosotros
                                      • Contactos

                                      © 2025 Despertar Matinal. Aviso Legal - comunícate con nuestra redacción y obtén más información sobre Despertar Matinal..

                                      No Result
                                      View All Result
                                      • Home

                                      © 2025 Despertar Matinal. Aviso Legal - comunícate con nuestra redacción y obtén más información sobre Despertar Matinal..

                                      Welcome Back!

                                      Login to your account below

                                      Forgotten Password?

                                      Retrieve your password

                                      Please enter your username or email address to reset your password.

                                      Log In

                                      Desarrollado por
                                      ►
                                      Las cookies necesarias habilitan funciones esenciales del sitio como inicios de sesión seguros y ajustes de preferencias de consentimiento. No almacenan datos personales.
                                      Ninguno
                                      ►
                                      Las cookies funcionales soportan funciones como compartir contenido en redes sociales, recopilar comentarios y habilitar herramientas de terceros.
                                      Ninguno
                                      ►
                                      Las cookies analíticas rastrean las interacciones de los visitantes, proporcionando información sobre métricas como el número de visitantes, la tasa de rebote y las fuentes de tráfico.
                                      Ninguno
                                      ►
                                      Las cookies de publicidad ofrecen anuncios personalizados basados en tus visitas anteriores y analizan la efectividad de las campañas publicitarias.
                                      Ninguno
                                      ►
                                      Las cookies no clasificadas son aquellas que estamos en proceso de clasificar, junto con los proveedores de cookies individuales.
                                      Ninguno
                                      Desarrollado por