AI/ML, Malware

Anthropic’s Claude harnessed in data extortion scheme

NBC News reports that at least 17 companies, including several healthcare providers, a financial entity, and a defense contractor, had been compromised and extorted as part of a ransom attack campaign that involved the exploitation of Anthropic's Claude artificial intelligence chatbot.

Attackers leveraged Anthropic's Claude Code chatbot for "vibe coding" to create illicit programs, to determine vulnerable organizations and exfiltrate their data before organizing such information for subsequent extortion activities, according to a report from Anthropic.

Information pilfered by the threat actors included individuals' bank details and Social Security numbers, as well as International Traffic in Arms Regulations-related data, the report found. More defenses have already been implemented by Anthropic in the wake of the attack.

"We have robust safeguards and multiple layers of defense for detecting this kind of misuse, but determined actors sometimes attempt to evade our systems through sophisticated techniques," said Anthropic Head of Threat Intelligence Jacob Klein.

An In-Depth Guide to AI

Get essential knowledge and practical strategies to use AI to better your security program.

Get daily email updates

SC Media's daily must-read of the most current and pressing daily news

By clicking the Subscribe button below, you agree to SC Media Terms of Use and Privacy Policy.

Related Terms

Adware

You can skip this ad in 5 seconds