Recruiters lure developers with fake coding tests that deliver NodeRabbit and PollCat remote-access malware onto their systems.
A researcher tricked Claude Code into running attacker code up to 80% of the time. Anthropic says the behaviour is working as designed.