Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Artificial Intelligence - AI Used to Run Unprecedented Cybercrime Operation, Anthropic Reports
Artificial Intelligence Attacks Latest News Malware News & Analysis

AI Used to Run Unprecedented Cybercrime Operation, Anthropic Reports

Kirsten DoyleBy Kirsten DoyleAugust 29, 20258 Mins Read
Share LinkedIn Twitter Facebook Copy Link Email
AI Used for Cybercrime
Share
Facebook Twitter LinkedIn Email Copy Link
Quick AI Summary
ChatGPTClaudeGeminiGrokPerplexityDeepSeekCopilot

An attacker turned an AI chatbot into a full-scale criminal operation. The target: at least 17 companies across healthcare, government, and emergency services. The tool: Claude, Anthropic’s advanced AI.  

The result is a cybercrime campaign of staggering scope and sophistication. 

Anthropic revealed the operation in a report released this week. The bad actor leveraged Claude Code, a chatbot designed to write software from simple prompts, to identify vulnerable targets.  

Then, it created malware to steal sensitive files, organized the stolen data, analyzed financial documents, suggested ransom amounts in bitcoin, and even drafted the extortion emails themselves. 

“The actor used AI to what we believe is an unprecedented degree,” the report said. “Claude Code was used to automate reconnaissance, harvesting victims’ credentials, and penetrating networks.” 

Making Tactical, Strategic Decisions 

Anthropic added: “Claude was allowed to make both tactical and strategic decisions, such as deciding which data to exfiltrate, and how to craft psychologically targeted extortion demands. Claude analyzed the exfiltrated financial data to determine appropriate ransom amounts and generated visually alarming ransom notes that were displayed on victim machines.” 

These AI models are being used in ways Anthropic has never seen. Threat actors are actively trying to circumvent its safeguards. 

The operation shows a dangerous new reality. AI is no longer just a tool for advice. It has become an active participant in crime. Agents with minimal coding skills can now run attacks that once required teams of experienced hackers.  

Fraudsters are embedding AI in every stage of their schemes: profiling victims, stealing data, generating ransomware, even building fake identities to extend reach. 

Vibe Hacking: AI in Extortion 

The report details the most striking case. The hacker didn’t encrypt stolen files in typical ransomware fashion. Instead, Claude helped identify the most sensitive data and craft threats to leak it publicly. Extortion demands reached six figures. 

Claude handled reconnaissance, harvested credentials, and made tactical decisions. It analyzed stolen financials to suggest ransom amounts. It generated visually alarming ransom notes for victim systems. Anthropic’s team even simulated a custom ransom note to demonstrate the method. 

This is an evolution in AI-assisted cybercrime. These attacks adapt in real time to defenses like malware detection. 

How it Was Used 

North Korean IT operatives also exploited AI. Using Claude, they created fake identities, aced coding assessments, and even delivered real work once employed by US Fortune 500 tech firms. AI eliminated the need for years of specialized training, letting unskilled operators bypass barriers that once slowed the regime’s scams. 

In another case, a cybercriminal used Claude to develop, market, and sell ransomware-as-a-service online. Packages with advanced encryption and anti-detection features went for $400 to $1,200. Without the AI, the criminal likely could not have created functioning malware. 

Anthropic’s Response 

All implicated accounts have been banned. New detection tools and classifiers have been deployed. Technical indicators have been shared with authorities. Each incident informed improvements to safety measures. 

The report warns that AI-enhanced cybercrime will grow. Attacks like these will become more common as AI lowers the bar for technical expertise and amplifies reach. 

The Dark Side of AI’s Helpful Nature 

“This really isn’t surprising when you think about it,” adds Anna Collard, SVP of Content Strategy and Evangelist at KnowBe4. “Criminals have always been quick to adopt new technologies, and AI tools are no exception – just like the rest of us office workers have integrated AI into our workflows. AI chatbots are fundamentally designed to be helpful and please their users, which makes them vulnerable to manipulation even with guardrails in place.” 

Collard says a determined bad actor can often find ways to trick these systems into assisting with unethical activities, as we saw here with Claude being used for everything from identifying targets to writing ransom notes. “It’s essentially the dark side of AI’s helpful nature, the same eagerness to assist that makes these tools so useful for legitimate work can be exploited for criminal purposes.”  

Less Time and Effort 

Satish Swargam, principal security consultant at Black Duck, said: “Hackers are known to use sophisticated tools to launch cyber-attacks, and Anthropic’s recent report shows how hackers are now using AI chatbots to discover, prepare, and formulate attacks to make them even more effective with less time and effort. Nowadays, even novices can utilise AI chatbots to launch cyberattacks, highlighting how easily this can be done.  

“In this case, Swargam says AI security controls have helped in identifying unethical use of AI chatbots, but they are often too late in preventing an attack. “Interestingly, the AI chatbot also helped determine the ransom amount to be demanded from the breached company in exchange for not disclosing the stolen data. Companies should proactively address these vulnerabilities when using AI tools by adopting robust cybersecurity measures such as DLP controls and staying abreast of technological advancements to prevent such scenarios and ensure uncompromised trust in software, especially in today’s regulated and AI-powered world.”  

Look Where the Information Goes 

Nivedita Murthy, senior security consultant at Black Duck, added: “Attackers using AI to improve their attack methods or increase automation is not surprising. However, in this case, it is interesting to note that Claude Code had a wealth of information on which organizations were vulnerable and where. It also freely gave away this information in the form of an attack vector.” 

She says what organizations need to really look into is how much the AI tools they use know about their company and where that information goes. While AI usage has been highly beneficial to all, organizations need to understand that AI is a repository of confidential information that requires protection, just like any other form of storage system. Accountability and compliance are core requirements of doing business. While embracing AI at scale, these two factors need to be kept in mind.”  

A Turning Point in the Evolution of Cybercrime 

Jamie Akhtar, CEO and Co-founder of CyberSmart, says: “The revelation that cybercriminals have begun using generative AI to automate ransomware campaigns marks a turning point in the evolution of cybercrime. According to Anthropic, attackers have exploited Claude to identify vulnerable organisations, infiltrate networks, exfiltrate sensitive data, and even craft tailored ransom demands all without the deep technical expertise usually required.” 

This demonstrates how AI has dramatically lowered the barrier to entry, enabling less-skilled actors to launch highly effective attacks at scale, Akhtar adds. “The fact that targets have included healthcare, emergency services, and government institutions only underscores the severity of this development.  

For individuals and organisations, Akhtar says the lesson is clear: “AI-enabled attacks are no longer theoretical but a present and growing risk. To stay safe, businesses must prioritise patching and hardening exposed systems, adopt multi-factor authentication, and train staff to spot even the most convincing phishing attempts. Regular external-attack surface monitoring and the deployment of advanced detection tools can help intercept automated threats before they cause damage. Meanwhile, individuals should be cautious of unexpected communications, keep software updated, and use strong, unique passwords. In the age of AI-powered cybercrime, vigilance and layered defences are essential.”  

A Wake-Up Call 

Martin Kraemer, Security Awareness Advocate at KnowBe4, calls Anthropic’s report a wake-up call. “We are no longer waiting for AI to disrupt cybercrime. It is happening. Cybercrime as a business is fundamentally changing, fully reaping the efficiency and quality benefits of AI. As a result, we must expect more sophisticated and more widespread attacks.  

Kraemer says attackers will tenaciously work with AI to make money from businesses of all sizes, while the AI enables efficiencies of scale where no business can deem itself unappealing to an attacker because of its size, sector, or location. “Attackers exploiting AI automation lowers the threshold of being a viable target that appears on attackers’ radar for any given organization. After all, running a full attack chain got a lot cheaper.” 

While this is proof of AI-powered cybercriminal organizations, Kraemer says the next step of evolution is only around the corner. “We are seeing early versions of malware with built-in AI capability. Once criminals have figured out the architecture of running AI inside malware and during deployment at the target organization, AI-powered agentic malware reacts to and evades defense mechanisms will become a reality. The defensive side must implement intelligent, agentic defense agents to combat this challenge asap.” 

Kirsten Doyle
Kirsten Doyle
Information Security Buzz News Editor

Kirsten Doyle has been in the technology journalism and editing space for nearly 24 years, during which time she has developed a great love for all aspects of technology, as well as words themselves. Her experience spans B2B tech, with a lot of focus on cybersecurity, cloud, enterprise, digital transformation, and data centre. Her specialties are in news, thought leadership, features, white papers, and PR writing, and she is an experienced editor for both print and online publications.

  • Kirsten Doyle
    Klue supply chain breach exposes Salesforce data at several security firms
  • Kirsten Doyle
    AI-Powered Attacks Become Top Concern for Security Professionals, New Filigran Survey Reveals
  • Kirsten Doyle
    ShinyHunters targets Oracle PeopleSoft customers through critical zero-day
  • Kirsten Doyle
    SIG report: AI-generated code is linked to twice the security risk and rising technical debt

The opinions expressed in this post belong to the individual contributors and do not necessarily reflect the views of Information Security Buzz.

Share. Facebook Twitter LinkedIn Email Copy Link

Related Posts

What Are AI SOC Agents? Use Cases, Architecture, and the Leading Vendors

June 19, 20266 Mins Read

AI-Powered Attacks Become Top Concern for Security Professionals, New Filigran Survey Reveals

June 19, 20265 Mins Read

From AI hype to operational reality: A practitioner’s framework for securing agentic systems

June 5, 20267 Mins Read
ISB-Bora-Side-Bar

No se ha podido establecer conexión. Error 429

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}