Malicious npm Package Stole Files From Claude AI User Directory via GitHub

Cybersecurity researchers have discovered a new malicious package on the npm registry that comes with information stealing capabilities According to OX Security the package named mouse5212superformatter is designed to upload files from mntuserdata a dedicated directory used by Anthropics Claude artificial intelligence AI tool to handle uploads and outputs in the background The