Anthropic publishes a threat intelligence report on how it disrupted efforts to misuse Claude for cyberattacks, influence operations, surveillance, and more
Cyber operations Surveillance operations Influence operations Conventional weapons Biological misuse Scams and fraud Illicit distillation
Anthropic
Context & Ripple Effects
Anthropic had already built Clio, an internal system for detecting and disrupting coordinated abuse, and its August 2025 threat report described Claude's use in a sophisticated cybercrime scheme. The company also paused higher-risk reinforcement-learning work after cyber-evaluation incidents, making this report part of a broader effort to pair model deployment with operational controls.
The disclosure lands alongside Anthropic's separate account of disrupted biology-related research attempts. Its claims are company-reported: prior expert commentary on Anthropic's cyberattack findings cautioned that AI-assisted hacking gains reported by white-hat researchers had been modest.
First-order effects
- Anthropic is turning identified misuse across cyber, surveillance, influence, weapons, fraud, and illicit-distillation categories into enforcement cases, limiting the affected actors' ability to use Claude for those activities.
- Claude's safety and security teams gain a more detailed public record of the abuse patterns their monitoring and access controls are intended to catch.
Second-order effects
- Anthropic's enterprise and government users face stronger scrutiny of how Claude is accessed and used in sensitive workflows, as misuse detection becomes part of the product's operating environment.
- Other frontier-model providers face pressure to show comparable detection, disruption, and disclosure capabilities rather than treating safety evaluations as a pre-release exercise alone.
Third-order effects
- If recurring threat reports are matched by repeatable enforcement, frontier-model competition shifts toward an AI enforcement surface: providers must operate persistent abuse-monitoring systems alongside model safeguards.
- The combination of cyber incidents, biology-related misuse reports, and higher-risk training pauses points toward safety governance that joins capability evaluations with post-deployment access controls.
The trend: Frontier AI safety is moving from static model testing toward continuous monitoring and enforcement of dual-use misuse after deployment.
Related: AI enforcement surface · Agentic attack surface · Anthropic · Claude · Anthropic’s August 2025 threat intelligence report · Anthropic’s biology-related misuse disruptions
Related Coverage
- Governments are turning to Claude to automate spying Axios · Sam Sabin
- Anthropic sounds alarm on AI models being misused to develop biological weapons Washington Examiner · David Zimmermann
- Bad actors in China and Russia are already weaponizing Anthropic's AI Politico · John Sakellariadis
- Claude was used for risky virus research by state-linked scientists, Anthropic says NBC News · Kevin Collier
- Anthropic says scientists used its AI for research that could aid biological weapons development New York Post · Ariel Zilber
- China says US accusations of AI theft are ‘groundless’ Hong Kong Free Press HKFP
- Deflation over for now; MOFCOM responds to US distillation advisory; DeepSeek IPO and new model; Xi-Trump summit Sinocism · Bill Bishop
- Anthropic Says Claude AI Blocked Biological Weapons Attempts Gadget Review · Nikshep Myle
- Anthropic Details Disrupted Claude Misuse Across Seven Harm Areas Unite.AI · Miles Okada
- Anthropic warns of efforts to use its AI to build biological weapons Quartz · Cris Tolomia
- Anthropic says it blocked researchers using Claude for possible bioweapon research Tom's Guide · Amanda Caswell
- [Two weeks of investigative journalism later] “well it turns out that what really happened was Claude told a teenager to clean their rooms by mixing brake fluid and bleach like their grandmother used to”. — https://www.nytimes.com/... @mhoye@cosocial.ca
- It is at least a novel marketing strategy to argue that your product is really too dangerous to be allowed to exist — https://www.nytimes.com/... [image] @jalefkowit@hachyderm.io · Jason Lefkowitz
- Anthropic Says It Blocked Possible Efforts to Build Biological Weapons Hacker News
- AI lets small actors run state-level hacking campaigns, Anthropic report finds CyberScoop · Greg Otto
- Anthropic Says It Shut Down Several Efforts to Use Claude to Develop Biological Weapons SFist · Jay Barmann
- Anthropic says it thwarted plots to build biological weapons using its AI after whistleblower warned its tech will end humanity Daily Mail · Natasha Anderson
- Anthropic says it blocked misuse of its AI that could have supported biological weapons Livemint
- Anthropic says it disrupted scientists using Claude AI for possible biological weapons development CBS News · Lauren Fichten
- Anthropic Reveals How It Stopped ‘Kamikaze Drone’ Swarms, Biological Weapons And More The Daily Caller · Sean Moran
- Avian flu, drone swarms, and mass surveillance included in Anthropic's safety report Mashable
- Detecting and countering misuse of AI: September 2026 Hacker News
- Anthropic details distillation campaigns from Alibaba, Moonshot AI, and DeepSeek TechCrunch · Russell Brandom
- Anthropic caught scientists using Claude to further biological weapon research Engadget · Ian Carlos Campbell
- Anthropic says it blocked possible attempts to use AI to develop bioweapons KTVZ-TV · Deidre McPhillips
- Anthropic Says It Blocked Possible Efforts to Build Biological Weapons Slashdot · BeauHD
- Anthropic says AI now lets lone operators run state-level hacking campaigns SiliconANGLE · Duncan Riley
- 17/ Lastly: some press coverage is going to frame this report as “Claude was used to [do bad thing] without noting that the only reason we know is because Anthropic dug into this and disrupted it. If we don't incentivize companies to share this stuff, they'll stop. https://9to5mac.com/... @dagrano · David Agranovich
- 14/ A few broader push-backs.Anthropic notes that the impact numbers for some of the ops come from the attacker's own metrics. We've seen a lot of inflation there, so assume they're overstating their impact to some extent. https://www.foreignaffairs.com/ ... @dagrano · David Agranovich
- 13/ At Meta, we warned targeted users directly in-app. Anthropic usually can't, since the targets are people whose data an attacker pasted in. This makes it critical for AI companies to get indicators to the platforms and civil-society groups who can reach the targets, ideally programmatically and fast. @dagrano · David Agranovich
- Anthropic Says It Blocked Bioweapons Efforts and Detected Chinese Distillation Attacks The Information · Tiffany Li
- Anthropic says it blocked attempts to use AI for potential biological weapons Financial Times · Zehra Munir
- Anthropic says it blocked possible efforts to use AI for biological weapons development, Iran-linked cases Fox Business
- OpenAI calls for mandatory safety requirements Associated Press
Analysis
Discussion
-
@anthropicai
@anthropicai
on x
We're publishing our most detailed threat intelligence report to date. It covers how people tried to misuse Claude—for cyberattacks, influence operations, surveillance, biology, and building weapons—and how we found and stopped them. We disrupted every operation in the report, an…
-
@richardsever
Richard Sever
on bluesky
“chilling examples of state-sponsored biological weapons developers tapping into the rapidly advancing capabilities of leading AI models” www.nytimes.com/2026/09/10/u...
-
@harrylitman
Harry Litman
on bluesky
this plus Hugging Face genuinely suggests the (sci-fi, possibly malevolent, 2001) future is here, or will be by next week. In a way, swamps everything else. — www.nytimes.com/2026/09/10/u...
-
@dustinvolz
Dustin Volz
on bluesky
New: Anthropic said it had disrupted several potential plots this year by scientists who used its leading artificial intelligence models to conduct research that could have helped develop biological weapons. www.nytimes.com/2026/09/10/u...
-
r/worldnews
r
on reddit
Anthropic Says It Blocked Possible Efforts to Build Biological Weapons
-
r/singularity
r
on reddit
NYT - Anthropic Says It Blocked Possible Efforts to Build Biological Weapons
-
@suchenzang
Susan Zhang
on x
oh no chynaaa oh no biorisk oh no cybercrime oh no oh no oh nooo, please nationalize us! or buy our IPO! please take these dangers seriously!
-
Riggs Goodman III
Riggs Goodman III
on linkedin
Anthropic published its September 2026 threat intelligence report today. It covers misuse of Claude that our Threat Intelligence team detected and disrupted between December 2025 and August 2026. …
-
@timkellogg.me
Mr. Tim
on bluesky
Anthropic report on misuse among users — cyberattacks, influence operations, surveillance, bio weapons — www.anthropic.com/threat-intel...
-
NewsMax.com
Sandy Fitzgerald
on x
Anthropic Disrupts Potential Biological Weapons Research
-
r/singularity
r
on reddit
Chinese AI Giants Accused of Sending Millions of User Queries to U.S. Models- WSJ
-
@quinnypig
Corey Quinn
on x
That's nothing, this one time I tried to misuse Claude to fix a security bug in my code.
-
@rsanti97
Santi Ruiz
on x
I *believe* this is the most comprehensive, transparent report a frontier lab has published on misuse of their models. It covers the full range of misuse, from dating app scams all the way to China-based undersea warfare operations.
-
@logangraham
Logan Graham
on x
We've reached the moment in time where (unsafeguarded, unmonitored) AI actually does just pose a national security risk. The biological misuse we caught is the most concerning to me. We work hard to stop this. But in a world of proliferation, we need to rapidly build defenses aga…
-
@afinetheorem
Kevin A. Bryan
on x
Fascinating. Remember, for now, AI + bad human actor is biggest threat. Anthropic documents a *ton* of attempted bad behavior they stopped, but notes that open models + public scaffolds could do the attacks also with no way to stop them at source.
-
@attrc
Andrew Case
on x
The cybersecurity section of this report is wild. APT operators used Claude for nearly everything: coding tools, testing against security products, building capture platforms, and processing victim data. Its like Anthropic was looking over their shoulder!
-
Dave Orr
Dave Orr
on linkedin
Today we published our latest threat intelligence report. It covers some of the most sophisticated attempts to misuse Claude we've found so far …
-
@billkristol
Bill Kristol
on x
“Anthropic said it had disrupted several potential plots this year by scientists who used its leading artificial intelligence models to conduct research that could have helped develop biological weapons.” AI. What could go wrong? https://www.nytimes.com/...
-
@amy_siskind
Amy Siskind
on x
Well this comforting...NOT! “Anthropic said it had disrupted several potential plots this year by scientists who used its leading artificial intelligence models to conduct research that could have helped develop biological weapons.” https://www.nytimes.com/...
-
@tim_hua_
Tim Hua
on x
I continue to not believe in biorisk from individual/small scale bioterrorists. Reading through the “biological misuse” section has not changed my mind. Most of these look pretty dual use to me.
-
@rmac18
Ryan Mac
on x
might be cool if we could go back to the days when everyone was like “lol we wanted flying cars, instead we got 140 characters hahaha :)” https://www.nytimes.com/...
-
@martylederman
Marty Lederman
on bluesky
Better than the alternative, I suppose ... (now what are the odds that all of the companies, here and abroad, also realize 100% detection?) — www.nytimes.com/2026/09/10/u...
-
@kimmasters
Kim Masters
on bluesky
What are we even doing here? And wouldn't it be a great relief to have competent leadership? — www.nytimes.com/2026/09/10/u...
-
@judah-grunstein
Judah Grunstein
on bluesky
“You are not seeing someone in a comic book kind of way say, ‘Hey, I want to build a biological weapon to kill everybody,’” Jacob Klein, the head of threat intelligence at Anthropic [a company building an AI model it thinks will kill everybody], said ... “It's an incredibly nuanc…
-
@robertscotthorton
Scott Horton
on bluesky
Previously AI-driven research on biological warfare was identified as one of five principal scenarios in which AI could lead to the extinction of the human species. “In a new report, the A.I. start-up added that it could not determine if the research was legitimate or nefarious,
-
@repcasar
Congressman Greg Casar
on bluesky
Right now, we're counting on AI corporations to voluntarily block weapons of mass destruction. — Voluntarily. — Congress must do the obvious thing: BAN catastrophic AI uses like creating biological or nuclear weapons.
-
@niubi
Bill Bishop
on x
The MSS is going to love this one. USG probably did
-
@aliceisplaying
Alice
on x
“Moonshot serves Claude instead of Kimi and collects exchanges for model training” looooooooooooooooooool
-
@niubi
Bill Bishop
on x
puts moonshot and its CEO whom media has been fawning over in a bit of a different light
-
@niubi
Bill Bishop
on x
this report documents clear violations of PRC law by PRC entities. Anthropic should offer to forward its detailed findings to the Ministry of Public Security through the FBI's channel, would be a good example of US-China law enforcement cooperation:
-
Nathan Frey
Nathan Frey
on linkedin
Today we're sharing some of the most notable attempts of threat actors attempting to use Claude for malicious activity, including developing biological weapons. …
-
Vincent Joralemon
Vincent Joralemon
on linkedin
This is I think one of the biggest threats that AI poses (like civilization-ending), but some thoughts: …
-
r/technology
r
on reddit
Anthropic Says It Blocked Possible Efforts to Build Biological Weapons
-
@natolambert
Nathan Lambert
on x
Big W for people saying that distillation was mostly an SFT artifact, and how its unclear how it would become increasingly influential in an era defined by RL.
-
@charliermarsh
Charlie Marsh
on x
Fascinating stuff from Anthropic's threat intelligence report
-
@firstadopter
Tae Kim
on x
DeepSeek and Kimi are now clearly scummy deceptive cheaters. Companies should use more legitimate open source models like Nemotron.
-
r/technology
r
on reddit
Anthropic Says It Blocked Possible Efforts to Build Biological Weapons
-
r/ContagionCuriosity
r
on reddit
Anthropic Says It Blocked Possible Efforts to Build Biological Weapons
-
r/USNEWS
r
on reddit
Anthropic Says It Blocked Possible Efforts to Build Biological Weapons
-
@suchenzang
Susan Zhang
on x
anthropic: paying customers are stealing from us! meta ai/TBD/MSL: tyvm zhipu & moonshot! how much for your claude traces? mad respect for the hustle, all!
-
@bakkermichiel
Michiel Bakker
on x
Looks like Moonshot (Kimi) indeed had access to raw CoTs from Claude for distillation like the paper from @kotekjedi_ml et al suggested. Absolutely insane! Wonder how much closing this loophole will impact the performance of Kimi 4, 5, 6, 7...