Key Facts
Anthropic’s September threat-intelligence report describes malicious use of Claude that it says its team identified and disrupted over the preceding eight months. The report covers activity from December 2025 through August 2026 across cyber operations, surveillance, scams and fraud, influence operations, conventional weapons development, biological misuse, and illicit distillation.
Technical Details
Anthropic says the cyber cases involved suspected state-sponsored groups, financially motivated criminals, and politically motivated individuals. It describes AI use across the cyber kill chain, including the creation of malware, phishing kits, and surveillance tooling, and frames the principal risk as faster, broader, and deeper operations.
Impact & Mitigation
Anthropic says it disrupted the reported activity, strengthened safeguards, and shared intelligence with authorities and industry partners where appropriate. Security teams should review the report’s case studies for relevant abuse patterns and maintain controls that limit phishing, credential theft, and unauthorized automation.
