Artificial intelligence company Anthropic says it disrupted multiple campaigns that misused its Claude models between December 2025 and August 2026. In a new threat intelligence report, Anthropic describes efforts that range from cyber espionage and scams to influence operations, surveillance, and research that could potentially support biological or conventional weapons development. It also says some actors used Claude to evade detection or accelerate operations, not just to generate text or code.

Anthropic’s report covers alleged activity linked to Russia and China, including a Russia-associated group Anthropic says targeted military intelligence and government/diplomatic organizations while using AI to help malware avoid security defences. It also details an automated fake-news operation in Bangladesh that produced large volumes of content for social media using multiple Claude accounts, along with surveillance-related cases involving identification tools and intelligence-gathering software. On weapons and biosecurity, Anthropic cites several cases where Claude was used in work that could have harmful dual-use implications.

Across outlets, a key theme is “uplift”: attackers use AI as part of multi-step workflows, including reconnaissance, exploitation, data theft, and media production, sometimes with less human expertise. Another emphasized issue is “distillation,” which Anthropic says malicious actors used to replicate Claude’s capabilities—allegedly at large scale from China-linked entities, including Alibaba. The reports differ mainly in emphasis and additional examples, while both rely on Anthropic’s findings and its statement that it shared lessons with safeguards and partners.