Skip to content
AI HOT (Curated Pool)

China's MIIT warns Claude Code versions 2.1.91–2.1.196 contain backdoor that exfiltrates user data

工信部发布Claude Code后门安全风险提示

China's MIIT issued a risk alert stating that Claude Code versions 2.1.91 through 2.1.196 contain built-in monitoring that sends sensitive data—including user location and identity—to remote servers without consent. Affected organizations are advised to immediately audit usage, uninstall or upgrade to a cleaned version, and tighten outbound network controls and traffic monitoring for dev tools. The post does not clarify whether the backdoor was inserted by Anthropic or a third party, nor does it provide the scope of impact or confirmed leak incidents.

Why it matters: MIIT issued a formal risk alert naming Claude Code versions 2.1.91–2.1.196 as containing surveillance code that exfiltrates location and identifiers without consent, urging immediate audit or upgrade. This is the first time a national-level Chinese authority has made such a fi...

Read the original ↗Export Markdown