AI SecurityMar 18, 2026
'Claudy Day’ Trio of Flaws Exposes Claude Users to Data Theft
Researchers discovered a trio of vulnerabilities collectively called 'Claudy Day' affecting Claude AI users, including a prompt injection flaw that can be chained with other weaknesses to enable data theft. The attack leverages Google search results to initiate a full attack chain potentially compromising enterprise networks using Claude.
Summary
Researchers discovered a trio of vulnerabilities collectively called 'Claudy Day' affecting Claude AI users, including a prompt injection flaw that can be chained with other weaknesses to enable data theft. The attack leverages Google search results to initiate a full attack chain potentially compromising enterprise networks using Claude.
Indicators of Compromise
- malware — Claudy Day