- What changed
- Anthropic confirmed that a compromised Claude session key was used to mint unauthorized Claude Code OAuth tokens.
- Why you should care
- Compromised session keys expose users to unexpected token consumption and subscription disruptions.
- Your move
- Watch. Monitor account activity and security advisories for token management risks.
- What to watch next
- Anthropic publishing security guidance or updates regarding session token management and protection against unauthorized OAuth minting.
- Event
- security incident
- Event date
- Sep 8, 2026
- Relevant to
- General AI readers