When AI Account Hijacking, Hidden Amazon Fees, and Healthcare Breaches Hit Home
September 2, 2026

When AI Account Hijacking, Hidden Amazon Fees, and Healthcare Breaches Hit Home
Three separate incidents this month show why account security, pricing honesty, and data protection matter. You don't need to panic about any of them. You do need to know what happened and what you can do about it.
What is an infostealer, and why are Claude accounts being targeted?
An infostealer is a piece of malware that sits quietly on your computer and copies login information, browsing history, and session data without you knowing. Criminals are using infostealers to steal "session cookies" from Claude AI users—essentially stealing temporary digital proof that you're already logged in. Once they have that proof, they can access your Claude account and run up charges by using the service on your dime.
This happens because Claude, like most AI services, charges by the month or by usage. If someone else is logged in as you, they can generate expensive AI queries and rack up a bill under your name. You won't know it's happening until your credit card statement arrives.
How do you protect yourself if you use Claude or similar AI services?
Start with the basics. Make sure your computer has up-to-date antivirus or anti-malware software running. Windows Defender (built into Windows) and similar tools protect against infostealers if they're kept current. Update your operating system and your web browser regularly—these updates patch security holes that infostealers exploit.
Second, use a strong, unique password for Claude and any other AI service you pay for. A password manager like Bitwarden, 1Password, or the built-in password manager in your browser makes this easy. If a criminal gets your password from one source, they can't use it to break into other accounts if every password is different.
Third, check your Claude account regularly for activity that isn't yours. Log in once a week and look at your usage history if the service offers it. Most paid services show you when your account was accessed and from where. If you see logins from places you don't recognize, change your password immediately and contact Claude support.
What's happening with Amazon's lawsuit?
The FTC and 22 state attorneys general sued Amazon for a scheme that ran for over seven years. Amazon was quietly raising prices in its advertising auctions—the system where businesses bid to have their products show up in search results. What Amazon didn't tell sellers was that it was artificially inflating the cost of those ads. Sellers paid more, so they raised their own prices to cover it, and consumers ended up paying more for everyday items.
More than one million brands and sellers were affected. If you've bought anything on Amazon in the last seven years, this likely touched you in some small way.
What can you do about the Amazon lawsuit?
Right now, nothing. This is a legal action between the FTC and Amazon. If Amazon loses, there may be refunds or settlements that customers can claim. Watch for announcements from Amazon or the FTC about how to participate if that happens.
What you can do going forward is compare prices. Before you buy something on Amazon, check the price on the seller's own website or on other marketplaces. This habit protects you regardless of whether Amazon is transparent about its practices.
Is my health data at risk because of the McKesson breach?
McKesson is one of the largest healthcare distributors in the United States. It supplies pharmacies, hospitals, and clinics with medications and medical supplies. If you've filled a prescription at most pharmacies or received care at most hospitals in the last decade, McKesson had some information about you—your name, address, possibly medical history, and certainly insurance details.
In August, McKesson confirmed that a hacking group called ShinyHunters broke into their systems and stole hundreds of millions of patient records. This is a serious breach, but it doesn't mean your identity will be stolen tomorrow. It means your information is now in the hands of criminals, and you need to monitor for misuse.
What should you do if McKesson had your information?
First, assume your data was exposed. You don't need to prove it—just act accordingly.
Get a free credit report. Visit annualcreditreport.com (the official site, no ads, no promotions) and pull your credit report from all three bureaus—Equifax, Experian, and TransUnion. Look for accounts you didn't open. If you find any, dispute them immediately with the bureau and the lender.
Consider a credit freeze. This is a free tool that locks your credit so no one can open new accounts in your name without your permission. You can unfreeze it temporarily if you need to apply for a loan or credit card. Most people should have a freeze in place after a major breach.
Watch your bank and credit card statements closely for charges you didn't make. Set up alerts on your accounts so your bank texts or emails you about unusual activity.
The FTC also recommends registering for free credit monitoring if McKesson or your health provider offers it. Many do after a breach like this. You'll get alerts if someone tries to use your information.
You are not powerless. These protections work. Take them seriously, and you reduce your risk dramatically.
Stay informed and stay secure. You've got this.
Sources
Infostealers are hijacking Claude accounts at users' expense Malwarebytes Labs
FTC, States Sue Amazon Over Secret Ad Surcharge Scheme FTC Consumer Protection
McKesson confirms cyber incident after ShinyHunters claims patient-data theft Malwarebytes Labs
Enjoyed this? Get the next issue free.