Sunday, 13 September 2026
8 agent hacks today 8 vs yesterday (0)

Anthropic reports threat actors abusing Claude for cyberattacks, weapons and surveillance

Anthropic disclosed that state-sponsored and criminal groups abused its Claude models between December 2025 and August 2026 to automate intrusions, data theft, influence and surveillance operations, weapons software development and biological research. Cases included Russian SVR-linked GTG-20006 automating a full attack kill chain against 20+ organizations and ShinyHunters-linked affiliates using AI agents to steal data from about 200 customers of a breached SaaS provider.

Occurred 1 December 2025 · Disclosed 10 September 2026 · Record updated 13 September 2026

Impact

AI agents performed nearly all the work in a supply-chain breach of a SaaS provider that led to data theft from roughly 200 customer organizations and a dump of over 2,100 Azure AD token sets across more than 40 corporate tenants in about 34 hours; more than 20 government, defense and think tank organizations were targeted by a Russian espionage group, and Claude was also used for guided weapons, drone swarm and pathogen-related research before accounts were banned.

Our coverage

Sources

  1. theregister.comhttps://theregister.com/ai-and-ml/2026/09/10/latest-anthropic-horror-story-chills-with-tales-of-kamikaze-drone-swarms-and-bioweapons-research/5295702
  2. thehackernews.comhttps://thehackernews.com/2026/09/russian-state-sponsored-hackers-use.html
  3. thehackernews.comhttps://thehackernews.com/2026/09/claude-used-to-automate-exploitation.html