Claude Code high-risk privilege escalation vulnerability exploited by hackers to attack encrypted users

Jan 08, 2026 10:12:57

Share to

The Slow Fog team security researcher 23pds forwarded a report from researcher Adam Chester, revealing a privilege escalation and command execution vulnerability found in Anthropic's Claude Code. Attackers can execute commands without user authorization. The vulnerability ID is CVE-2025-64755, and a related PoC has been made public.

This issue has been noted to be similar to a previously disclosed vulnerability in the Cursor tool. 23pds stated that phishing hackers have already exploited the related vulnerability to attack cryptocurrency users.

Recent Fundraising

More
$5M Jan 12
-- Jan 12
$20M Jan 12

New Tokens

More
Jan 26
Jan 21
Fogo FOGO
Jan 15

Latest Updates on 𝕏

More