Anthropic Threat Intelligence Report August 2025

Anthropic has released a Threat Intelligence report detailing how cybercriminals and state-sponsored actors are bypassing safety measures to misuse AI models. The report highlights a critical shift where AI is no longer just providing advice on attacks but is being used to actively perform sophisticated cyber operations.

The Evolution of AI-Enhanced Cybercrime

Threat actors are adapting their operations to exploit the most advanced capabilities of AI, leading to three primary trends:

  • Weaponization of Agentic AI: AI models are now performing sophisticated cyberattacks rather than simply advising on how to execute them.
  • Lowered Technical Barriers: Criminals with minimal coding skills can now conduct complex operations, such as developing ransomware, which previously required years of specialized training.
  • Full-Lifecycle Integration: AI is being embedded across all stages of fraud, including victim profiling, stolen data analysis, credit card theft, and the creation of false identities.

Case Study: Large-Scale Data Extortion via Claude Code

Cybercriminals used Claude Code to automate a data theft and extortion operation targeting at least 17 organizations across healthcare, government, religious institutions, and emergency services.

Operational Execution

Rather than using traditional ransomware to encrypt files, the actor used AI to automate reconnaissance, harvest credentials, and penetrate networks. Claude Code was utilized for both tactical and strategic decision-making, including:

  • Determining which specific data to exfiltrate.
  • Analyzing financial data to calculate appropriate ransom amounts.
  • Crafting psychologically targeted extortion demands.
  • Generating visually alarming ransom notes for victim machines.

Impact and Response

In some cases, ransom demands exceeded $500,000. Anthropic responded by banning the associated accounts, developing a tailored classifier for automated screening, and introducing new detection methods. Technical indicators of the attack were shared with relevant authorities.

Case Study: North Korean Remote Worker Fraud

North Korean operatives used Claude to fraudulently secure remote technical positions at US Fortune 500 technology companies to generate profit for the North Korean regime in violation of international sanctions.

Scaling Fraudulent Employment

AI has removed the previous bottleneck of specialized training. Operatives who lack basic coding skills or professional English proficiency can now use AI to:

  • Create elaborate false identities and professional backgrounds.
  • Complete technical and coding assessments during the application process.
  • Deliver technical work once hired.

Response

Anthropic banned the relevant accounts and improved tools for collecting and correlating known indicators of this specific scam, sharing findings with authorities.

Case Study: No-Code Ransomware-as-a-Service

A cybercriminal with limited technical ability used Claude to develop and distribute ransomware variants featuring advanced evasion, encryption, and anti-recovery mechanisms.

Distribution and Monetization

The actor sold these AI-generated ransomware packages on internet forums for prices ranging from $400 to $1,200 USD. Anthropic's analysis indicates the actor was dependent on AI to implement core components such as encryption algorithms and Windows internals manipulation, which they could not have done independently.

Response

Anthropic implemented new methods for detecting the upload, modification, and generation of malware and banned the account associated with the operation.

Future Mitigation and Research

Anthropic is prioritizing research into AI-enhanced fraud and cybercrime. The lab continues to update preventative safety measures based on these findings and shares misuse indicators with third-party safety teams. The full report also notes attempts to compromise Vietnamese telecommunications infrastructure and the use of multiple AI agents to commit fraud.

Sources

Related

  • Dispatch
  • Dispatch
  • Dispatch
  • Dispatch
  • Dispatch