@paul_cal: Beautiful Claude web exfil. cc @simonw
Summary
A tweet highlights a web exfiltration technique targeting Claude, with a mention to Simon Willison.
View Cached Full Text
Cached at: 07/15/26, 09:59 PM
@hyusapx Beautiful Claude web exfil. cc @simonw
Similar Articles
How I tricked Claude into leaking your deepest, darkest secrets
A security researcher discovered a vulnerability in Claude's web_fetch tool that allowed data exfiltration by chaining through nested links, compromising user privacy. Anthropic has since fixed the issue.
I tricked Claude into leaking your deepest, darkest secrets
A security researcher demonstrates a method to trick Claude AI into exfiltrating user personal data from its memory system by encoding data in web fetch URLs, exploiting the combination of memory retrieval and web browsing capabilities.
@0x0SojalSec: Claude Sonnet 5 jailbroken in minutes. @VittoStack post screenshots showing: - Working reverse shell code - Detailed il…
Claude Sonnet 5 was jailbroken in minutes using academic/research framing and persona hijack, bypassing most safety categories except chemical/biological.
@paul_cal: They actually tried some stuff themselves. Haven't audited but would be easy to point an agent at the repo & extend wit…
pxpipe is a local proxy that reduces Claude Code's token usage by converting bulky context (system prompts, tool docs, history) into compact images, achieving 59-70% cost savings with minimal accuracy loss. It exploits the token efficiency of images over text for dense content.
@no_stp_on_snek: neat, now what about that fable extension?
ClaudeDevs announces that Claude Code on desktop now includes an in-app browser, allowing Claude to interact with websites in a sandboxed, configurable environment.