Ten Minutes to Containment: How Agentic MXDR Scoped a Fake Claude Desktop Intrusion

Reported 24 Aug 2026 by otx · Severity: medium

A masqueraded scheduled task alert triggered an aggressive threat hunt that uncovered a complete FakeAgent intrusion campaign within ten minutes using an automated threat hunting agent. The campaign leveraged malvertising on Bing to distribute trojanized Claude Desktop installers