Suspicious

Phishings targeting Claude

Suspicious and active websites


Phishings targeting Claude

Suspicious and active websites


Website
claude.ai
About
AIAnthropic's AI assistant. Phishing aims at credential theft to drain Pro / Max subscription credits, exfiltrate conversation history from Projects, or hijack API keys tied to the billing account.
Countries
United StatesUnited States (1)
Historical record. phishunt is not tracking any active Claude phishing site right now; the 1 entry below is from the 365-day archive (sites taken down, cleaned up, or otherwise inactive). Use them for retrospective analysis, not as a current threat-feed signal.
First seen URL IP Cert Detail
2026-07-26 https://claude-ai.cyou 172.67.143.135 - View →

AIHow to verify a real Claude URL

  • Legitimate Claude URLs always end in claude.ai (e.g. www.claude.ai, account.claude.ai). Anything else — including look-alike typosquats, hyphenated variations, or unfamiliar TLDs like .xyz / .top / .vip — is not Claude.
  • The padlock icon proves TLS is active, not that the site is safe. Free DV certificates are issued to attackers in minutes; every active site listed above has a valid TLS certificate.
  • If you got the link from email, SMS, or social media, do not click it. Open claude.ai from your browser bookmark or type the domain manually.
  • Real Claude pages almost never ask for credentials immediately after clicking from a message — treat any such redirect as a phishing attempt until the domain is verified.