Anthropic: The Report That Implicates Claude, Between Missiles, Espionage in Mali, and Chinese Pillaging
One tool, two faces. Between December 2025 and August 2026, Russian spies, Chinese hackers, and a Malian consultant had the same idea. Several Chinese AI laboratories did too. All employed Claude for their purposes, without asking for permission from anyone. Anthropic has just released the report detailing how. And especially, how the company claims to have disconnected each of these operations, one by one. Key points of this article:
- Anthropic discovered that its AI, Claude, was exploited by Russian spies, Chinese hackers, and a Malian consultant for cyberattacks and data theft.
- Claude was used for weapon programs in China, Russia, and Yemen, as well as for illegal surveillance operations and romance scams in Africa.
Cyberattacks: Claude Code Hired by Moscow and Beijing {#h-cyberattacks-claude-code-hired-by-moscow-and-beijing}
The official report from Anthropic documents the group GTG-20006, linked to the Russian collective Midnight Blizzard. Its target: over 20 government and military organizations in Ukraine, Europe, and the Middle East. Indeed, autonomous AI agents were rewriting malware in real-time as soon as an antivirus detected them. Furthermore, over 300,000 national identity files were stolen in North Africa.
In Changsha, Hunan, two undergraduate students and a former intern from a Chinese cybersecurity firm set up a nearly autonomous exploit factory. It targeted around fifty organizations, from energy to health. Meanwhile, hackers affiliated with ShinyHunters used Claude agents to scan 1.8 million Android applications. The goal: to uncover exposed secrets.
Moreover, a technology provider left several terabytes of data behind, according to Anthropic. Anthropic also acknowledges that, in some operations, AI agents did << almost all the work >> on their own, without continuous human supervision.
Weapons and War: Claude Targets Taiwan and Arms Yemen {#h-weapons-and-war-claude-targets-taiwan-and-arms-yemen}
According to Anthropic, six conventional weapon programs mobilized Claude: three in China, two in Russia, and one in Yemen. A Yemeni cell reportedly preferred AI over human engineers to work on a missile project. It even went so far as to ask it to diagnose the failure of a test.
On the Russian side, another case would involve a drone project. On the Chinese side, another would concern a simulation of electronic warfare targeting sites in Taiwan. Anthropic claims to have also documented five cases related to research on biological weapons, without detailing their nature.
We're publishing our most detailed threat intelligence report to date.
It covers how people tried to misuse Claude---for cyberattacks, influence operations, surveillance, biology, and building weapons---and how we found and stopped them.
We disrupted every operation in the report,...
--- Anthropic (@AnthropicAI) September 10, 2026
<< We are publishing our most detailed threat monitoring report to date.This report describes how Claude was misused -- for cyberattacks, influence operations, surveillance, biology, and weapon design -- and how we detected and neutralized these attempts.
We thwarted all operations mentioned in the report and learned from these experiences to strengthen our protective measures. Where appropriate, we also shared our findings with authorities and other AI-specialized companies.
These cases are exceptional: we highlight some of the most sophisticated misuses we have observed. However, it is essential to analyze them, as they indicate trends in AI misuse, strengths, and areas for improvement in our protective measures.
We publish this report so that others can identify the same activities on their own platforms and so we can provide the public with a clearer view of the evolution of emerging threats.>>
Surveillance and Romance Scams: The True Face of Misused Claude {#h-surveillance-and-romance-scams-the-true-face-of-misused-claude}
In Bamako, a consultant working for the National State Security Agency (ANSE) built a system with Claude. Named Lakana 360, it monitors around 25 million SIM cards across the country's three mobile operators. The program includes: calls, messages, voice interception, and automated intelligence files. This system also bypasses the legal requirement for a court decision. Another detail that worries Anthropic: it operates locally. Banning the consultant's account is therefore not enough to stop it.
More trivial, but just as organized: the GTG-15001 network ran over 4,700 AI personas on 20 dating apps. The goal: at least 25,000 real people targeted in two weeks. Consequently, nearly 2.36 million messages were generated, with a ratio of three fake profiles per real victim. When someone requested a video call, freelance workers took over to make the scam credible.
-- Price
Chinese Distillation: AI Labs Tap into Claude {#h-chinese-distillation-ai-labs-tap-into-claude}
This is the section that should interest Washington the most. Seven Chinese laboratories have siphoned off Claude's reasoning to strengthen their own models. This technique is called distillation.
Alibaba at the Top of the List {#h-alibaba-at-the-top-of-the-list}
Alibaba is far ahead, with over 151 million exchanges between May and July. The daily peak reached nearly 3 million exchanges. More than 3,500 fraudulent accounts did the work, all focused on the Qwen model family.
This is indeed a clear escalation compared to the episode that Le Journal du Coin reported back in June. At that time, Anthropic estimated the misuse at 28.8 million exchanges earlier in the year.
Moonshot and DeepSeek, the Same Scheme
Moonshot AI has totaled over 23 million exchanges. Anthropic claims to have identified, among these requests, a user likely linked to the Chinese military. This user was seeking to analyze surveillance footage.
DeepSeek employed a different method: the company relayed requests from its own users to Claude Opus without their knowledge. Consequently, over 12.1 million exchanges were recorded in two weeks, including internal documents and active identifiers.
Zhipu, Xiaomi, SenseTime, MiniMax: The Next on the List
Zhipu, Xiaomi, SenseTime, and MiniMax complete the list of labs flagged by Anthropic. Furthermore, one of them even tested over 12,000 different methods to extract Claude's hidden reasoning, eventually finding some that worked. The complete document details all the indicators of compromise, campaign by campaign.
Anthropic states that it has banned the accounts, shared its indicators of compromise with authorities and the industry, and strengthened its safeguards based on each case. Neither Moscow nor Beijing has confirmed these allegations, which rely solely on Anthropic's data. This is not the first exercise of its kind. We reported back in August 2025 how a lone cybercriminal used Claude Code to extort 17 organizations. A year later, the scale has changed dramatically. States, armies, and multinational AI companies are now in the same column of the table.
This content is provided for general informational purposes only and doesn't constitute financial, investment, legal, or tax advice. Any events, rewards, online promotions, or related information mentioned herein should not be considered a recommendation, solicitation, or invitation to purchase, sell, trade, or otherwise deal in any crypto assets. Crypto assets are highly volatile and may result in loss. The availability of WEEX services, products, and related events may vary by region. You are responsible for ensuring that your participation is in accordance with applicable local laws and regulations.
You may also like

Ethereum's Next Upgrade May Become the Most Significant Catalyst in History

Web3 Newsletter: Industry Highlights and Must-See Trends This Week

Cryptocurrency Security Guide: How to Identify and Prevent Social Engineering Attacks

Why SBI just put millions behind a Singapore startup’s stablecoin push

Tokenized stocks face 24/7 pricing gap: RedStone COO

Bitcoin Will Hit $1 Million, Says Kevin O’Leary—But There’s a Quantum Catch

Fraud Detection with AI SEON: Signals Rise from 900 to Over 1,100

WEB3 Digital Nomads Don't Need a U Card That Only Allows Payments

How to Spend Crypto on Apple Pay in 2026 (No Selling)

ZEC Coin Nears $1,500 as a Leveraged Short Trader Faces a $7.66 Million Paper Loss
ZEC coin nears $1,500 as two large leveraged short traders face a combined paper loss north of $34 million, the squeeze sits on top of genuine institutional demand through Grayscale's ZCSH.

AMD Stock Soars 5%: Reports Say It's Raising GPU and CPU Prices
AMD stock rose on unconfirmed reports of a 10% price hike on GPUs and chipsets tied to rising TSMC costs, Ryzen CPUs are notably absent from the list.

The US Stock Exchange on Blockchain: 3 Points to Understand the SEC's Major Initiative

AMD Stock Price: Why Free Cash Flow Fell From $2.6B to $1.6B Even as Shares Rally
AMD's free cash flow fell 39% in Q2 as capex nearly tripled and supplier payments got delayed, even as revenue hit a record $11.5 billion.

CLARITY Act needs 3 more senators and a race against the clock for a 2026 revival

Stablecoins Force Banks to Adapt, 24/7 Cross-Border Payments Are Here
![[SCAN 2026 Final Interview] IBarelyKnowHer: ⑱ Blockchain and Cryptography... A Diverse Team of Indian Security Experts](/public-static/15_8b3431959d.png?format=avif)
[SCAN 2026 Final Interview] IBarelyKnowHer: ⑱ Blockchain and Cryptography... A Diverse Team of Indian Security Experts

Can GSTOCK Reach $25M After Its 190x BNB Chain Rally?

Hedera: 3 million Filipino farmers to monetize their carbon

Why risk a smart contract exploit when safe US Treasuries pay better crypto yields?

What Is GSTOCK? How to Buy Gstock After Its 190x BNB Chain Rally

NDV Jason: How My Investment Approach Has Been Changed by the Market and AI from Bitcoin to Global Macro

South Korea to Build a Chain That Only Recognizes Korean Won, Maroo Incorporates Compliance into Infrastructure

Can UNI Reach $10 as Tokenized Stock AMMs Gain Traction?

Helius Co-founder Mert Claims Privacy Mechanism is the Foundation of Zcash's Superiority

Has the Macroeconomic Pricing of BTC Changed? A Nine-Year Review of the Federal Reserve, the Dollar, the Nasdaq, ETFs, and Stablecoins

Crypto in the United States: Brad Garlinghouse (Ripple) remains optimistic

From Yen to JGBs: The US-Japan Policy Game is Reshaping Global Interest Rate Pricing

Lee Jae-myung Acknowledges Shortcomings of Single-Leveraged ETFs, Does Not Apologize for Losses

Lee Jae-myung Acknowledges Shortcomings of Single-Leveraged ETFs, Does Not Apologize for Investor Losses












