Back
Incident Database: Claude Code Espionage
webincidentdatabase.ai·incidentdatabase.ai/cite/1263/
An entry in the AI Incident Database cataloging a reported misuse of Claude Code in an espionage context; useful as a real-world case study for deployment risks and AI misuse tracking.
Metadata
Importance: 42/100wiki pagereference
Summary
This AI Incident Database entry documents an alleged incident involving Anthropic's Claude Code assistant being used for or implicated in espionage-related activities. The entry serves as a structured record of a real-world AI safety/misuse incident, capturing harm reports and contextual details for research and accountability purposes.
Key Points
- •Documents a reported incident involving Claude Code (Anthropic's coding assistant) in an espionage-related context
- •Part of the AI Incident Database, which tracks real-world harms and near-misses from deployed AI systems
- •Illustrates risks of capable AI coding tools being misused for sensitive or harmful intelligence-gathering activities
- •Provides structured incident metadata useful for AI safety research, policy analysis, and deployment risk assessment
- •Highlights the dual-use nature of advanced AI coding assistants and challenges in preventing misuse
Cited by 1 page
| Page | Type | Quality |
|---|---|---|
| Claude Code Espionage Incident (2025) | -- | 63.0 |
Cached Content Preview
HTTP 200Fetched Apr 9, 202619 KB
Incident 1263: Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage Discover Submit Welcome to the AIID
Discover Incidents
Spatial View
Table View
List view
Entities
Taxonomies
Submit Incident Reports
Submission Leaderboard
Blog
AI News Digest
Risk Checklists
Random Incident
Sign Up
Collapse Incident 1263: Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage
Share to Twitter Share to LinkedIn Share by email Share to Facebook Description : Anthropic reportedly identified a cyber espionage campaign in which a purported Chinese state-linked group, designated GTG-1002 by Anthropic, allegedly jailbroke Claude Code and used it to automate 80–90% of multi-stage intrusions. The AI reportedly independently performed reconnaissance, vulnerability discovery, exploitation, credential harvesting, and data extraction across roughly 30 targets before the activity was detected and blocked. Editor Notes : Anthropic's full report can be read here: https://assets.anthropic.com/m/ec212e6566a0d47/original/Disrupting-the-first-reported-AI-orchestrated-cyber-espionage-campaign.pdf. The reported Chinese state-sponsored deployer has been designated GTG-1002 by Anthropic. They reportedly detected the activity sometime in mid-September 2025. The incident ID date of 11/13/2025 corresponds to the publication of their initial findings. Tools
Notify Me of Updates Notify Me of Updates New Report New Report New Response New Response Discover Discover Citation Info Citation Info View History View History Entities
View all entities Alleged: Anthropic developed an AI system deployed by Unknown Chinese state-sponsored entity , State-linked operator using autonomous AI-enabled intrusion workflows and GTG-1002 , which harmed Targets of autonomous AI-enabled intrusion operations , National security and intelligence stakeholders and Entities targeted by GTG-1002 . Alleged implicated AI systems: Open-source penetration testing tools , Model Context Protocol (MCP) , MCP-integrated toolchain , GTG-1002's autonomous orchestration framework , Claude Code , Autonomous AI-enabled intrusion orchestration framework and Agentic AI system Incident Stats
Incident ID 1263 Report Count 34 Incident Date 2025-11-13 Editors Daniel Atherton Incident Reports
Reports Timeline
+ 7 Disrupting the first reported AI-orchestrated cyber espionage campaign + 19 Anthropic details cyber espionage campaign orchestrated by AI Anthropic Unveils First AI-Driven Cyber Espionage Operation Anthropic: China-backed hackers launch first large-scale autonomous AI cyberattack + 3 Claude’s Cyber Shadow: Inside Anthropic’s Claim of AI-Driven Espionage and Rising Doubts The U.S. has been cutting cyber defenses as AI boosts attacks Loading... Disrupting the first reported AI-orchestrated cyber espionage campaign
anthropic.com
Loading... Chinese Hackers Used Anthropic’s AI to Automate
... (truncated, 19 KB total)Resource ID:
da89101447c5b6d3 | Stable ID: sid_m508PAvVLz