Claude Code Install Phishing Site Tops Google Search Results

A Reddit user on r/ClaudeAI reports that searching Google for "Claude code install mac" returns a phishing site as the top result, masquerading as the official Claude Code download page. The fake page is designed to trick developers into downloading malware or stealing credentials.
What's Happening
- The phishing site appears as the first Google result for the search term "Claude code install mac".
- It mimics the official Anthropic/Claude branding and UI to appear legitimate.
- Users who download software from the fake site risk installing malicious payloads or exposing sensitive data.
How to Stay Safe
Always verify the domain before downloading Claude Code. The only official source is https://docs.anthropic.com/en/docs/claude-code/overview or directly from Anthropic's verified distribution channels. Check the URL carefully — phishing sites often use slight misspellings or different TLDs.
Who Is Affected
Developers on macOS searching for Claude Code installation instructions are the primary target. The attack exploits trust in search engine rankings.
📖 Read the full source: r/ClaudeAI
👀 See Also

Security Checklist for Claude AI-Generated Applications
A developer shares a checklist of common security and operational gaps found in applications built with Claude Code, including rate limiting, authentication flaws, database scaling issues, and input handling vulnerabilities.

pi-governance: RBAC, DLP, and audit logging for OpenClaw coding agents
pi-governance is a plugin that sits between AI coding agents and your system, classifying tool calls and blocking risky operations. It provides bash command blocking, DLP scanning for secrets and PII, role-based access control, and structured audit logging with zero configuration.

A2A Secure: How Developers Built Cryptographic Communication Between OpenClaw Agents
A new protocol enables OpenClaw agents to communicate securely using Ed25519 signatures without shared API keys.

AWS reports AI-augmented attack compromised 600+ FortiGate firewalls
Cybercriminals used off-the-shelf generative AI tools to compromise over 600 internet-exposed FortiGate firewalls across 55 countries in a month-long campaign, according to AWS. The attackers scanned for exposed management interfaces, tried weak credentials, and used AI to generate attack playbooks and scripts.