B
今週中
Anthropicのブラウザ拡張機能「Claude for Chrome」において、以前修正されたはずのClaudeBleed脆弱性が依然として存在することがM…
📌 一言でいうと
Anthropicのブラウザ拡張機能「Claude for Chrome」において、以前修正されたはずのClaudeBleed脆弱性が依然として存在することがManifold社により指摘されました。攻撃者は偽造されたクリックイベントを注入することで、ユーザーの意図に反してGmailやGoogleドキュメント、カレンダーなどの情報を読み取るタスクをAIに実行させることが可能です。現在、完全な修正が行われていないため、ユーザーは「无需詢問即可執行(確認なしで実行)」モードをオフにすることが推奨されています。
🔍該当判定
- Google Chromeで拡張機能『Claude for Chrome』をインストールして利用している
- Claude for Chromeの設定で、AIがタスクを自動実行する『无需詢問即可執行(確認なしで実行)』モードを有効にしている
- Claude for Chromeを通じて、Gmail・Googleドキュメント・Googleカレンダーのデータにアクセスさせている
上記いずれにも該当しない → 静観でOK
✅該当時の対応
Claude for Chromeの設定から「无需詢問即可執行(確認なしで実行)」モードをオフにし、AIエージェントがタスクを実行する前に必ずユーザーの承認を必要とする設定に変更してください。
📧 メール案を見る (社員向け + 管理者向け)
⚠️ これは AI が生成した参考例です。配信前に必ず内容をご確認のうえ、貴社の状況に合わせて編集してご利用ください。実際の被害状況や自社の利用環境を踏まえた判断は、貴社のセキュリティ責任者にご確認ください。
件名: 【注意喚起】Claude for Chrome 拡張機能をご利用の方へ
お疲れさまです。情報システム担当です。
AIアシスタント「Claude」のブラウザ拡張機能において、悪意のあるサイトを閲覧した際に、AIが勝手にメールやカレンダーの内容を読み取ってしまう可能性がある脆弱性が報告されました。
ご協力をお願いしたいこと:
1. Claude for Chrome の設定を確認し、「无需詢問即可執行(確認なしで実行)」モードをオフにしてください。
2. AIがタスクを実行する際は、必ず内容を確認して承認するようにしてください。
対応期限: 本日中
お疲れさまです。情報システム担当です。
AIアシスタント「Claude」のブラウザ拡張機能において、悪意のあるサイトを閲覧した際に、AIが勝手にメールやカレンダーの内容を読み取ってしまう可能性がある脆弱性が報告されました。
ご協力をお願いしたいこと:
1. Claude for Chrome の設定を確認し、「无需詢問即可執行(確認なしで実行)」モードをオフにしてください。
2. AIがタスクを実行する際は、必ず内容を確認して承認するようにしてください。
対応期限: 本日中
Subject: [Security Alert] For users of the Claude for Chrome extension
Hi everyone,
A vulnerability has been reported in the 'Claude for Chrome' browser extension that could allow malicious websites to trick the AI into reading your emails or calendar without your consent.
Action required:
1. Please check your Claude for Chrome settings and disable the 'execute without asking' mode.
2. Ensure that you manually approve any tasks the AI agent attempts to perform.
Deadline: End of today
Hi everyone,
A vulnerability has been reported in the 'Claude for Chrome' browser extension that could allow malicious websites to trick the AI into reading your emails or calendar without your consent.
Action required:
1. Please check your Claude for Chrome settings and disable the 'execute without asking' mode.
2. Ensure that you manually approve any tasks the AI agent attempts to perform.
Deadline: End of today
件名: 【共有】Claude for Chrome における ClaudeBleed 脆弱性の継続的な影響について
お疲れさまです。Claude for Chrome の脆弱性に関する情報共有です。
■ 概要
Manifold社の報告により、Claude for Chrome において event.isTrusted の検証不足によるクリックイベントの偽造が可能であることが判明しました。これにより、攻撃者は特定の固定タスク(Gmail/Google Docs/Calendarの読み取り等)を強制的にトリガーさせることが可能です。
■ 影響範囲
- 対象製品: Claude for Chrome (バージョン 1.0.80 までに影響)
■ 対応手順
1. 利用ユーザーに対し、設定画面から「无需詢問即可執行(確認なしで実行)」モードを無効化するよう指示してください。
2. ベンダー(Anthropic)による完全なパッチのリリースを確認し、アップデートを適用してください。
■ 参考情報
- Manifold Security Research
対応優先度: 高
対応期限: 速やかに
お疲れさまです。Claude for Chrome の脆弱性に関する情報共有です。
■ 概要
Manifold社の報告により、Claude for Chrome において event.isTrusted の検証不足によるクリックイベントの偽造が可能であることが判明しました。これにより、攻撃者は特定の固定タスク(Gmail/Google Docs/Calendarの読み取り等)を強制的にトリガーさせることが可能です。
■ 影響範囲
- 対象製品: Claude for Chrome (バージョン 1.0.80 までに影響)
■ 対応手順
1. 利用ユーザーに対し、設定画面から「无需詢問即可執行(確認なしで実行)」モードを無効化するよう指示してください。
2. ベンダー(Anthropic)による完全なパッチのリリースを確認し、アップデートを適用してください。
■ 参考情報
- Manifold Security Research
対応優先度: 高
対応期限: 速やかに
Subject: [Security Info] Persistent ClaudeBleed Vulnerability in Claude for Chrome
Hi team,
This is a technical update regarding a vulnerability in the Claude for Chrome extension.
■ Overview
Manifold has identified that the ClaudeBleed vulnerability persists because the extension fails to verify the 'event.isTrusted' attribute of click events. This allows attackers to inject forged clicks via web scripts to trigger predefined AI tasks, such as accessing Gmail, Google Docs, and Calendar data.
■ Scope
- Affected Product: Claude for Chrome (up to version 1.0.80)
■ Mitigation Steps
1. Instruct users to disable the 'execute without asking' mode in the extension settings.
2. Monitor for a definitive patch from Anthropic and ensure the extension is updated immediately upon release.
■ Reference
- Manifold Security Research
Priority: High
Deadline: Immediate
Hi team,
This is a technical update regarding a vulnerability in the Claude for Chrome extension.
■ Overview
Manifold has identified that the ClaudeBleed vulnerability persists because the extension fails to verify the 'event.isTrusted' attribute of click events. This allows attackers to inject forged clicks via web scripts to trigger predefined AI tasks, such as accessing Gmail, Google Docs, and Calendar data.
■ Scope
- Affected Product: Claude for Chrome (up to version 1.0.80)
■ Mitigation Steps
1. Instruct users to disable the 'execute without asking' mode in the extension settings.
2. Monitor for a definitive patch from Anthropic and ensure the extension is updated immediately upon release.
■ Reference
- Manifold Security Research
Priority: High
Deadline: Immediate