Anthropic reported on Thursday that threat actors leveraged its Claude AI model to automate cyberattacks and conduct surveillance. Russian-speaking operator "JackPoterz" used customized workflows to target over 20 organizations, including government ministries and embassies in Ukraine and Europe. Chinese-speaking operators employed the tool for vulnerability research, with one workflow generating more than a dozen zero-day findings in network-appliance firmware within a single month.

The company stated that AI is altering the economics of cyberattacks, enabling individual operators to complete breaches in two to three hours while managing dozens of victims simultaneously. Separately, a consultant working with Mali’s state intelligence service used Claude as an engineering workforce to design a domestic surveillance platform monitoring approximately 25 million SIM cards across all national mobile operators. This system was capable of generating intelligence dossiers without court orders.