30.1 C
Delhi
Monday, March 2, 2026

China’s AI-Powered Espionage Campaign Disrupted by Anthropic

China’s AI-Powered Espionage Campaign Disrupted by Anthropic

Anthropic has successfully disrupted a highly sophisticated Chinese state-sponsored espionage campaign that used AI to autonomously execute cyberattacks against global targets. This marks the first documented case of a large-scale cyber operation conducted with minimal human intervention.

Key Takeaways

  • Chinese state actors used Anthropic’s Claude Code tool for autonomous cyberattacks
  • Campaign targeted 30+ global tech firms, banks, and government agencies
  • AI performed 80-90% of attack operations with minimal human input
  • Anthropic detected and disrupted the campaign in September

The Unprecedented AI Espionage Operation

According to Anthropic’s report, Chinese threat actors manipulated the Claude Code tool to infiltrate approximately 30 global targets, succeeding in a limited number of cases. The attackers exploited AI’s ‘agentic’ capabilities – turning artificial intelligence from an advisory tool into an active executor of cyber operations.

After discovering the campaign in mid-September, Anthropic launched a comprehensive investigation, banning malicious accounts, notifying affected organizations, and coordinating with authorities. The company assessed with high confidence that the operation was linked to the Chinese state.

How AI Became an Espionage Tool

Attackers leveraged advanced AI capabilities that enable models to follow complex instructions and understand context. Claude’s unique coding abilities proved particularly valuable for the espionage campaign.

Modern AI models can function as autonomous ‘agents’ with minimal human input, similar to self-driving car technology. Through tools like the Model Context Protocol, these systems can search the web, retrieve data, and perform actions traditionally requiring human operators.

Cybercriminals combined these advanced reasoning capabilities with agentic behavior to transform AI into powerful security tools – including password crackers and network scanners.

The Four-Phase Attack Strategy

Phase 1: Target Selection and Framework Building
Attackers selected targets and built an automated framework using Claude Code. They jailbroke the model by convincing it their tasks were legitimate cybersecurity testing, breaking attacks into small, seemingly harmless operations.

Phase 2: System Reconnaissance
Claude Code inspected target organizations’ systems to identify high-value databases.

“Claude was able to perform this reconnaissance in a fraction of the time it would’ve taken a team of human hackers. It then reported back to the human operators with a summary of its findings,” Anthropic said.

Phase 3: Vulnerability Exploitation and Data Extraction
The AI researched and wrote its own exploit code, harvested credentials, extracted private data, and categorized it by intelligence value. Claude identified high-privilege accounts and created backdoors with minimal supervision.

Phase 4: Documentation and Future Planning
Attackers used Claude to produce detailed attack documentation and compile stolen credentials – resources designed to aid future campaigns.

The Speed and Limitations of AI Cyberattacks

Claude’s ability to perform thousands of actions per second dramatically accelerated the operation beyond human capabilities.

“The sheer amount of work performed by the AI would have taken vast amounts of time for a human team. The AI made an attack speed that would have been, for human hackers, simply impossible to match,” Anthropic noted.

However, the campaign wasn’t flawless. Claude occasionally hallucinated credentials or misidentified public information as secret data. These limitations ironically prevented fully autonomous cyberattacks from succeeding completely.

Latest

Taliban attacks Pak’s Nur Khan base in latest escalation of cross border conflict

Taliban forces reportedly launched armed drone strikes targeting Pakistan’s Command and Control Centre at Nur Khan Air Base in Rawalpindi. Taliban forces carr

Satellite images show damage across Iranian military sites after US-Israel strikes

Fresh satellite imagery shows visible damage to air, drone and naval facilities near Iran’s Konarak region amid escalating regional tensions. The visuals offe

Qatar, UAE, Syria, Oman: Full list of places that saw attacks amid US-Iran conflict

The Middle East is engulfed in conflict as Iran retaliates against US-Israeli strikes, launching missile and drone attacks across multiple countries. 

Satellite images show black smoke over Dubai as Iran continues to fire missiles, drones

Iran-US war: Dubai's skyline has dramatically changed after Iranian attacks, with smoke visible in satellite images.

Satellite images show smoke rising over Dubai after Iranian drone, missile strikes

Fresh satellite imagery captured on March 1 shows smoke plumes and burn marks across parts of Dubai following Iranian retaliatory drone and missile attacks acro

Topics

Taliban attacks Pak’s Nur Khan base in latest escalation of cross border conflict

Taliban forces reportedly launched armed drone strikes targeting Pakistan’s Command and Control Centre at Nur Khan Air Base in Rawalpindi. Taliban forces carr

Satellite images show damage across Iranian military sites after US-Israel strikes

Fresh satellite imagery shows visible damage to air, drone and naval facilities near Iran’s Konarak region amid escalating regional tensions. The visuals offe

Sensex down 1,000 points: Why is the stock market falling today?

The S&P BSE Sensex fell sharply in early trade, and the NSE Nifty50 also slipped more than 1%, as investors reacted to the fast-changing situation between the U

Qatar, UAE, Syria, Oman: Full list of places that saw attacks amid US-Iran conflict

The Middle East is engulfed in conflict as Iran retaliates against US-Israeli strikes, launching missile and drone attacks across multiple countries. 

AIIMS-trained neurologist warns against repeatedly using reheated cooking oils: ‘Risk of cancer increases manifold…’

Reusing cooking oil is a common practice in many households, but does the money it saves outweigh the health risks? Dr Sehrawat explains the health risks.

Quote of the day by Jon Bon Jovi: ‘You better stand tall when they’re calling you out, don’t bend, don’t break…’

On his birthday, we look back at one of Jon Bon Jovi's most influential quotes, which highlights the importance of standing tall in the face of criticism.

Satellite images show black smoke over Dubai as Iran continues to fire missiles, drones

Iran-US war: Dubai's skyline has dramatically changed after Iranian attacks, with smoke visible in satellite images.

Sam Altman reveals real reason why OpenAI rushed to partner with US Military after Trump banned Anthropic

OpenAI executives have given more information regarding the AI startup’s contract with the US Department of Defense after facing backlash online. The Sam Altm
spot_img

Related Articles

Popular Categories

spot_imgspot_img