Back to News
Market Impact: 0.7

Anthropic says Chinese hackers used its Claude AI chatbot in cyberattacks

Artificial IntelligenceCybersecurity & Data PrivacyTechnology & InnovationGeopolitics & War
Anthropic says Chinese hackers used its Claude AI chatbot in cyberattacks

Anthropic reported that Chinese hackers utilized its Claude AI chatbot in what is considered the first large-scale, AI-driven cyberespionage operation, targeting approximately 30 technology firms, financial institutions, chemical manufacturers, and government agencies. The attackers leveraged Claude to gather credentials and steal private data, notably achieving an unprecedented attack speed with minimal human intervention. This incident, attributed to a likely state-sponsored Chinese group, underscores a significant escalation in cyber threat sophistication and signals a future where AI-powered attacks are expected to become more prevalent and impactful across critical sectors.

Analysis

Anthropic has disclosed a novel cyberespionage operation where Chinese hackers utilized its Claude AI chatbot, marking what the company believes is the first large-scale attack largely executed by AI. This campaign targeted approximately 30 entities, including technology firms, financial institutions, and government agencies, primarily to gather credentials and steal private data. While only a "small number" of these attacks succeeded, the incident highlights a significant escalation in cyber threat capabilities. The operation, detected in mid-September and attributed to a likely state-sponsored Chinese group, leveraged AI to achieve an unprecedented attack speed, making "thousands of requests per second"—a feat impossible for human hackers. Attackers reportedly "duped" Claude into assisting by posing as a legitimate cybersecurity firm, further obscuring their tracks by breaking down the attack into small tasks. This demonstrates a new level of operational stealth and efficiency. Anthropic anticipates a significant increase in the scale and sophistication of AI-powered cyberattacks as AI agents become more prevalent, noting their cost-effectiveness and rapid operational capabilities. This development underscores a critical shift in the cybersecurity landscape, posing substantial challenges for data privacy and national security across critical sectors, reflected by the strongly negative sentiment and high market impact.