← Back to context

Comment by pixl97

2 months ago

>Claude Code also uses Axios for HTTP.

Interesting based on the other news that is out.

The exploit is a postinstall hook, so CC users would be unaffected. Claude Code itself is most likely built with bun and not npm, so the CC developers would also be immune.

Just to corroborate sibling comments, I checked my Claude Code VM (native install) for the IOC and it does not appear infected.