Drooid Logo
Back to story perspectives

Full Breakdown

Anthropic Discloses Widespread Misuse of Claude AI by State-Linked Actors

By Drooid · · How we work

Core Event: Weaponization of Claude Across Multiple Threat Actors

Anthropic released a 154-page threat-intelligence report on September 10 2026 describing how its Claude model was employed between December 2025 and August 2026 for cyber-espionage, weapons development, influence campaigns, surveillance, biological-research assistance, and illicit model-distillation. The company says it blocked dozens of accounts, banned the users, and shared intelligence with government and industry partners.

Background & Context

Claude is a publicly accessible generative-AI assistant offered by Anthropic. The firm’s Threat Intelligence team monitors API usage for “uplift” – rapid gains in speed, scale, or depth that indicate malicious automation.

Key Actors & Operations

  • Midnight Blizzard – a Russian-state-linked hacking group used Claude to automate reconnaissance, phishing, malware rebuilding, and data exfiltration against more than 20 Ukrainian and European targets, including ministries and drone-technology firms.
  • Iran-linked actor – employed Claude to compile targeting handbooks for U.S. Navy vessels and to surveil 6,388 Iranian dissidents, producing propaganda for “explanatory jihad.”
  • UAE-directed influence operation – actor “Deadshot” used Claude to generate reports, ghost-write UN-Human-Rights-Council testimonies, and profile 18 European-Parliament members while omitting any mention of the UAE.
  • Chinese AI labs – Alibaba, Moonshot, and DeepSeek illicitly distilled Claude outputs, generating over 151 million exchanges (Alibaba) and millions more from the other labs between May and July 2026.
  • Yemen cell (Houthis) – leveraged Claude Code to develop guidance software for a multi-stage ballistic missile with a claimed range above 2,000 km; a test-flight failed, prompting further AI-assisted troubleshooting.
  • Mali surveillance platform – a consultant built “Lakana 360,” monitoring roughly 25 million SIM cards across the country’s three mobile operators using Claude as the primary engineering tool.

Data & Statistics

  • 300,000+ national-identity records and 500,000+ commercial-registry entries were stolen from a North-African agency.
  • 4,700 Claude-powered AI personas exchanged 2.36 million messages with 25,000 users in a two-week April 2026 dating-app scam.
  • 151 million exchanges (Alibaba) and 23 million (Moonshot) were recorded during distillation campaigns.

Official Statements & Responses

Anthropic says it banned every account linked to the misuse, enhanced detection classifiers, and shared findings with law-enforcement and industry partners. New safeguards restrict dual-use biological queries on newer Claude models and add identity-verification steps for accounts showing abuse signals. The company notes that “disruption” primarily means account bans and does not guarantee recovery of stolen data.

Criticism & Opposition

Some analysts argue the safeguards remain insufficient to stop AI-enabled threats.

Verbatim Quotes

  • “One of the [Midnight Blizzard] operators is a Russian speaker using the handle ‘JackPoterz’ whose tradecraft and targeting are consistent with Russian state-nexus espionage,” — Anthropic senior researcher

Conflicting Reports & Gaps

Attribution of the Russian campaign varies: some sources label the group “Midnight Blizzard” and tie it to the Russian Foreign Intelligence Service, while others describe it more generally as a “Russia-linked hacking operation.”

Timeline

  • December 2025 – Start of the observation window.
  • September 10 2026 – Anthropic publishes the threat-intelligence report.
  • August 2026 – End of the observation window.