The Memory Heist: How a Prompt Injection Turned Claude Into a Data Exfiltration Tool
In a blog post titled 'The Memory Heist', researcher Ayush documented a social engineering attack that weaponized Claude's persistent memory and its ability to fetch external URLs. By crafting content that Claude ingests as trusted context, the exploit coerced the model into r…