Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Illicit AI Model Access Offered by Poison Claude

Illicit AI Model Access Offered by Poison Claude

Posted on August 5, 2026 By CWS

Cybersecurity experts have identified a concerning trend of unauthorized AI model access being sold on clandestine cybercrime platforms. Among these is a service named Poison Claude, which advertises access to Anthropic’s advanced language models like Opus 4.8, Opus 4.7, Opus 4.6, and Sonnet 4.6 at discounted rates.

How Poison Claude Operates

Poison Claude markets its services by exploiting free bonus credits, such as those available through AWS Bedrock, to offer cheaper token access. According to Okta researchers Jeremy Kirk and Mathew Woodyard, the service charges a fraction of the official token price, collecting payment in cryptocurrencies. Customers receive an API key compatible with Anthropic’s systems and configure their environments to use this key instead of the official one.

The service operates by routing user prompts through its own API, ultimately retrieving responses from Anthropic’s models. A recent security lapse revealed the API endpoint’s active user count, which has since been corrected. The main domain is obscured by Cloudflare’s CDN, although Cloudflare has issued a phishing warning for the site without addressing the API domain.

Risks and Implications

While services like Poison Claude and Ecomagent.in entice users with cost savings and privacy, they pose significant risks. Providers may terminate fraudulent accounts, and service operators can access all customer prompts, raising privacy concerns. Additionally, these services may not deliver the promised quality, offering outdated or less capable models instead.

The use of such services is particularly prevalent in China, where access to U.S.-developed LLMs is restricted. Chinese companies have been accused of harnessing these models to enhance their AI capabilities, and military researchers reportedly use them to bolster defense technologies. This underscores the global reach and potential impact of these illicit activities.

Emerging Trends and Concerns

There is a rising trend of exploiting AI services’ free trials for creating synthetic identities, employing temporary domains to bypass detection. This is part of a broader increase in bot activity, with attackers using residential proxies to mask malicious actions as benign traffic. The growing sophistication of such methods presents challenges for security professionals.

The findings draw attention to the need for heightened vigilance and improved security measures in AI technology deployment. As the market for unauthorized AI access expands, addressing these vulnerabilities becomes crucial to safeguarding data and maintaining the integrity of AI systems.

The Hacker News Tags:AI security, Anthropic, API security, bot activity, Chinese market, cloud services, cryptocurrency payments, cyber threats, Cybercrime, data privacy, illegal AI use, LLM access, Poison Claude

Post navigation

Previous Post: 15 TP-Link Omada Flaws Risk Network Security
Next Post: AI Models Exhibit Unexpected Cyber Behaviors in Tests

Related Posts

Google Ordered to Pay 4M for Misusing Android Users’ Cellular Data Without Permission Google Ordered to Pay $314M for Misusing Android Users’ Cellular Data Without Permission The Hacker News
PureRAT Malware Spikes 4x in 2025, Deploying PureLogs to Target Russian Firms PureRAT Malware Spikes 4x in 2025, Deploying PureLogs to Target Russian Firms The Hacker News
Breaches Hidden, Attack Surfaces Growing, and AI Misperceptions Rising Breaches Hidden, Attack Surfaces Growing, and AI Misperceptions Rising The Hacker News
npm Enhances Security with 2FA and Install Controls npm Enhances Security with 2FA and Install Controls The Hacker News
UNC2891 Breaches ATM Network via 4G Raspberry Pi, Tries CAKETAP Rootkit for Fraud UNC2891 Breaches ATM Network via 4G Raspberry Pi, Tries CAKETAP Rootkit for Fraud The Hacker News
Silver Fox Exploits Microsoft-Signed WatchDog Driver to Deploy ValleyRAT Malware Silver Fox Exploits Microsoft-Signed WatchDog Driver to Deploy ValleyRAT Malware The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • ShieldBreak: Critical Windows Defender Vulnerability Exposed
  • Cyberattack Disrupts Ceva Logistics in Europe
  • Adobe Fixes Critical ColdFusion and Campaign Classic Vulnerabilities
  • Phishing Campaign Exploits Google Branding with Fake Email
  • Intel and AMD Address Over 80 Security Flaws

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • ShieldBreak: Critical Windows Defender Vulnerability Exposed
  • Cyberattack Disrupts Ceva Logistics in Europe
  • Adobe Fixes Critical ColdFusion and Campaign Classic Vulnerabilities
  • Phishing Campaign Exploits Google Branding with Fake Email
  • Intel and AMD Address Over 80 Security Flaws

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark