Anthropic reports widespread misuse of Claude models by cybercriminals and state actors
Story essentials
Anthropic
Global
September 2026
This page is produced by collecting and structuring multiple public reports. Sections based only on reporting or testimony affect the displayed assessment, and the page is updated when new information is identified.
About this article
COMPAMIR Editorial Team
The COMPAMIR editorial team brings together public reporting and links to the original coverage. We update the page as new information emerges.
Read our editorial policy- Earlier version 19/11/2026, 6:11:05 AM
Anthropic identified misuse of Claude models for cyberattacks, surveillance, and weapons development. Actors include Russian espionage groups and data-theft gangs like ShinyHunters. Misuse cases include automating cyber kill chains and developing guidance software for weapons. The report covers activity disrupted between December 2025 and August 2026.
Read next
Prioritized by shared people, places, and events.
Anthropic disrupts malicious use of Claude models by state-backed hackers and AI firms
Anthropic disrupted malicious activities including cyber espionage and illicit model distillation. Seven China-based labs, including Alibaba, were identified for attempting to replicate Claude's capabilities. Russian-linked hackers used AI for phishing and malware evasion. New threats include AI-assisted development of conventional weapons software.