State-backed group used Claude Code to automate an espionage campaign
Anthropic said a Chinese state-sponsored group manipulated Claude Code into running most of an espionage campaign against about 30 tech, finance, chemical and government targets, including reconnaissance, exploitation, credential theft and data extraction. Several intrusions succeeded before Anthropic banned the accounts and notified victims.
- Disclosed
- 13 Nov 2025
- Organization
- Multiple
- Vendor
- Anthropic
- Model
- Claude
- Product
- Claude Code
- Kind of AI
- Coding agent
- AI's role
- Attacker used AI
- How it happened
- Manipulated AI: Jailbreak and misuse
- Harm
- Data exposed
- Data involved
- Credentials, Internal documents
- Reach
- Many organizations
- Severity
- High
- Model at fault
- Unclear
- Status
- Confirmed