toolcall.
PolicySep 11, 2026, 14:25 UTC

Anthropic says Claude misuse now spans cyber, bio and weapons cases

The company says it disrupted threat actors using Claude across seven harm areas, from autonomous cyber workflows to biological and conventional-weapons misuse.

Anthropic threat intelligence report cover

Anthropic says its Threat Intelligence team has disrupted operations where malicious actors tried to use Claude across seven harm areas: cyber operations, influence operations, surveillance, scams and fraud, biological misuse, conventional weapons development and illicit distillation.

The report is notable because it moves the AI misuse discussion beyond hypothetical prompts. Anthropic says the cases involved suspected state-sponsored groups, financially motivated criminals, commercial spyware vendors, state propaganda institutions and politically motivated individuals. The company says Claude Haiku, Sonnet and Opus models appeared in the misuse it observed, while Fable and Mythos-class models were largely absent except for one distillation case.

The cyber section is especially sharp. Anthropic describes actors using AI-assisted workflows for reconnaissance, phishing, malware modification, evasion testing and data exfiltration. In one case tied by tradecraft to Russian espionage activity, the company says agents helped rebuild malware until it avoided security detections.

The biological and weapons sections matter because they show abuse pressure moving into higher-consequence domains. Anthropic says it blocked attempts involving biological misuse and conventional weapons development, and used the findings to strengthen safeguards and share intelligence with authorities and industry partners where appropriate.

For AI users and builders, the practical takeaway is blunt: misuse is becoming operational, multi-step and more autonomous. Safety work is now about detecting real workflows, not just filtering bad single prompts.

Sources

Mentioned

ai-safetyai-securityanthropicclaudecybersecurity