Skip to content
Longterm Wiki
Back

Incident Database: Claude Code Espionage

web
incidentdatabase.ai·incidentdatabase.ai/cite/1263/

An entry in the AI Incident Database cataloging a reported misuse of Claude Code in an espionage context; useful as a real-world case study for deployment risks and AI misuse tracking.

Metadata

Importance: 42/100wiki pagereference

Summary

This AI Incident Database entry documents an alleged incident involving Anthropic's Claude Code assistant being used for or implicated in espionage-related activities. The entry serves as a structured record of a real-world AI safety/misuse incident, capturing harm reports and contextual details for research and accountability purposes.

Key Points

  • Documents a reported incident involving Claude Code (Anthropic's coding assistant) in an espionage-related context
  • Part of the AI Incident Database, which tracks real-world harms and near-misses from deployed AI systems
  • Illustrates risks of capable AI coding tools being misused for sensitive or harmful intelligence-gathering activities
  • Provides structured incident metadata useful for AI safety research, policy analysis, and deployment risk assessment
  • Highlights the dual-use nature of advanced AI coding assistants and challenges in preventing misuse

Cited by 1 page

Cached Content Preview

HTTP 200Fetched Apr 9, 202619 KB
Incident 1263: Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage Discover Submit Welcome to the AIID 
 Discover Incidents 
 Spatial View 
 Table View 
 List view 
 Entities 
 Taxonomies 
 Submit Incident Reports 
 Submission Leaderboard 
 Blog 
 AI News Digest 
 Risk Checklists 
 Random Incident 
 Sign Up 
 Collapse Incident 1263: Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage

 Share to Twitter Share to LinkedIn Share by email Share to Facebook Description : Anthropic reportedly identified a cyber espionage campaign in which a purported Chinese state-linked group, designated GTG-1002 by Anthropic, allegedly jailbroke Claude Code and used it to automate 80–90% of multi-stage intrusions. The AI reportedly independently performed reconnaissance, vulnerability discovery, exploitation, credential harvesting, and data extraction across roughly 30 targets before the activity was detected and blocked. Editor Notes : Anthropic's full report can be read here: https://assets.anthropic.com/m/ec212e6566a0d47/original/Disrupting-the-first-reported-AI-orchestrated-cyber-espionage-campaign.pdf. The reported Chinese state-sponsored deployer has been designated GTG-1002 by Anthropic. They reportedly detected the activity sometime in mid-September 2025. The incident ID date of 11/13/2025 corresponds to the publication of their initial findings. Tools

 Notify Me of Updates Notify Me of Updates New Report New Report New Response New Response Discover Discover Citation Info Citation Info View History View History Entities

 View all entities Alleged: Anthropic developed an AI system deployed by Unknown Chinese state-sponsored entity , State-linked operator using autonomous AI-enabled intrusion workflows and GTG-1002 , which harmed Targets of autonomous AI-enabled intrusion operations , National security and intelligence stakeholders and Entities targeted by GTG-1002 . Alleged implicated AI systems: Open-source penetration testing tools , Model Context Protocol (MCP) , MCP-integrated toolchain , GTG-1002's autonomous orchestration framework , Claude Code , Autonomous AI-enabled intrusion orchestration framework and Agentic AI system Incident Stats

 Incident ID 1263 Report Count 34 Incident Date 2025-11-13 Editors Daniel Atherton Incident Reports

 Reports Timeline

 + 7 Disrupting the first reported AI-orchestrated cyber espionage campaign + 19 Anthropic details cyber espionage campaign orchestrated by AI Anthropic Unveils First AI-Driven Cyber Espionage Operation Anthropic: China-backed hackers launch first large-scale autonomous AI cyberattack + 3 Claude’s Cyber Shadow: Inside Anthropic’s Claim of AI-Driven Espionage and Rising Doubts The U.S. has been cutting cyber defenses as AI boosts attacks Loading... Disrupting the first reported AI-orchestrated cyber espionage campaign 

 anthropic.com

 Loading... Chinese Hackers Used Anthropic’s AI to Automate 

... (truncated, 19 KB total)
Resource ID: da89101447c5b6d3 | Stable ID: sid_m508PAvVLz