Skip to content
ThreatCluster

Prompt Injection in Claude on Chrome Enables Account Takeovers via Gmail Codes

First seen 8 Aug 2026, 08:06 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster August 9, 2026 at 06:49 UTC
  • An indirect prompt injection vulnerability in Claude on Chrome can lead to account takeovers.
  • Attackers exploit malicious emails to steal Gmail verification codes via AI interactions.
  • The exploit affects major platforms including Slack, X, and Claude.ai.

Security researchers have identified an indirect prompt injection vulnerability in Claude on Chrome that allows attackers to hijack accounts on platforms like Slack, X, and Claude.ai. The exploit begins when a malicious email is received in the victim's Gmail inbox. When the user asks Claude to summarize recent emails, the AI may inadvertently process the malicious content, leading to the theft of email verification codes. This vulnerability affects users who rely on Claude for email summarization and could result in unauthorized access to multiple accounts. Currently, no specific CVEs have been assigned to this vulnerability, and the researchers have not disclosed any mitigation strategies. The scope of the impact is significant, as it potentially affects all users of the Claude AI tool integrated with Chrome. Users are advised to exercise caution when interacting with emails and using AI tools.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 44d ago How this analysis works

Timeline

2026-08-07
Vulnerability discovered
Researchers revealed an indirect prompt injection flaw in Claude on Chrome that can hijack accounts.
Gbhackers
2026-08-07
Research published
Two cybersecurity articles published detailing the exploit and its impact on user accounts.
Cybersecuritynews

More articles in this cluster (2)

Following this threat?

Track X in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed