Anthropic disrupts Russian, Chinese AI campaigns targeting its Claude models
Anthropic alleges Moonshot and DeepSeek routed live customer chats through Claude for training data
Anthropic disclosed disruptions to several suspected malicious uses of its Claude AI models over the past eight months. The company alleged that Russian-linked cyber espionage campaigns and Chinese AI firms attempted to extract and replicate Claude's capabilities. Cybercriminals and state-backed hackers increasingly leverage AI to orchestrate and execute cyberattacks, often with human oversight rather than hands-on operation.
Anthropic disrupted attacks from seven China-based labs, including Alibaba, Moonshot, DeepSeek, and Xiaomi. The largest "illicit distillation" attack, targeting Claude by allegedly extracting its capabilities for use in improving Qwen models, was attributed to Alibaba. Moonshot and DeepSeek allegedly routed live customer conversations, potentially containing sensitive information, through Claude and utilized its responses as training data.
A hacking group allegedly linked to Russia's SVR foreign intelligence service used AI in phishing, hotel Wi-Fi hijacking, and WhatsApp takeover operations against targets in the Ukrainian government, military, and diplomatic sectors. The group developed malware capable of escaping security defenses by automatically detecting and rewriting code when flagged.
Anthropic identified new categories of threat actors misusing Claude, including those developing software for weapons design, including firearms, missiles, armed drones, bombs, and other munitions, as well as targeting and controlling systems for such weapons. The report detailed incidents involving affiliates of the ShinyHunters cybercrime collective, linked to attacks on major corporations worldwide. Jacob Klein, head of threat intelligence at Anthropic, stated that AI models have become more capable, raising new risks.
Written by urgent.news from The Business Times - Companies & Markets's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.
This story
This is one outlet's version. Read the fullest account.
- Anthropic publishes a threat intelligence report on how it disrupted efforts to misuse Claude for cyberattacks, influence operations, surveillance, and more (Anthropic) anthropic.com
- “Valuable warning shots”: How Anthropic now views Claude’s cyber incidents thenewstack.io
- Anthropic says it blocked researchers using Claude for possible bioweapon research tomsguide.com
- Anthropic says its models were misused for biological weapons research, surveillance and cyber attacks thenationalnews.com
- Anthropic details fourth Claude unauthorised access incident thearabianpost.com
- Moonshot, DeepSeek secretly routed user requests to Claude, Anthropic claims scmp.com
- Anthropic disrupts Russian, Chinese AI campaigns targeting its Claude models channelnewsasia.com
- Anthropic disrupts Russian, Chinese AI campaigns targeting its Claude models investing.com