fullreport_cyber_espionage_13Nov2025信息安全资料 .docxVIP

  • 0
  • 0
  • 约2.26万字
  • 约 13页
  • 2026-02-10 发布于浙江
  • 举报

fullreport_cyber_espionage_13Nov2025信息安全资料 .docx

Disruptingthe?rstreportedAI-orchestrated

cyberespionagecampaign

Fullreport

November2025

a

Executivesummary

WehavedevelopedsophisticatedsafetyandsecuritymeasurestopreventthemisuseofourAImodels.Whilethesemeasuresaregenerallyeffective,cybercriminalsandothermaliciousactorscontinuallyattemptto?ndwaysaroundthem.Thisreportdetailsarecentthreatcampaignweidenti?edanddisrupted,alongwiththestepswevetakentodetectandcounterthistypeofabuse.ThisrepresentstheworkofThreatIntelligence:adedicatedteamatAnthropicthatinvestigatesrealworldcasesofmisuseandworkswithinourSafeguardsorganizationtoimproveourdefensesagainstsuchcases.

Inmid-September2025,wedetectedahighlysophisticatedcyberespionageoperationconductedbyaChinesestate-sponsoredgroupwevedesignatedGTG-1002thatrepresentsafundamentalshiftinhowadvancedthreatactorsuseAI.Ourinvestigationrevealedawell-resourced,professionallycoordinatedoperationinvolvingmultiplesimultaneoustargetedintrusions.Theoperationtargetedroughly30entitiesandourinvestigationvalidatedahandfulofsuccessfulintrusions.

Upondetectingthisactivity,weimmediatelylaunchedaninvestigationtounderstanditsscopeandnature.Overthefollowingtendays,aswemappedtheseverityandfullextentoftheoperation,webannedaccountsastheywereidenti?ed,noti?edaffectedentitiesasappropriate,andcoordinatedwithauthoritiesaswegatheredactionableintelligence.

ThiscampaigndemonstratedunprecedentedintegrationandautonomyofAIthroughouttheattacklifecycle,withthethreatactormanipulatingClaudeCodetosupportreconnaissance,vulnerabilitydiscovery,exploitation,lateralmovement,credentialharvesting,dataanalysis,andex?ltrationoperationslargelyautonomously.ThehumanoperatortaskedinstancesofClaudeCodetooperateingroupsasautonomouspenetrationtestingorchestratorsandagents,wi

您可能关注的文档

文档评论(0)

1亿VIP精品文档

相关文档