{"data":{"id":"d8c9c8dd-1b26-4e68-8a9f-7891c712c32a","title":"Anthropic Says Russian Hackers Used Claude AI to Automate Malware Evasion","summary":"Russian hackers linked to a group called Midnight Blizzard used Claude AI to automatically test and modify malware to evade detection by security tools, speeding up a process that normally requires manual work from attackers. The group targeted over 20 organizations including government ministries, embassies, and defense contractors in Ukraine, Europe, and Asia, stealing sensitive information like drone technology and compromising communication accounts. Anthropic also reported a separate trend where attackers are targeting AI infrastructure itself, including stealing API keys (credentials that allow access to AI services) through prompt injection (tricking an AI by hiding instructions in its input) to gain unauthorized access.","solution":"Anthropic said it disrupted the activity, used what it learned to strengthen its AI safeguards, and shared intelligence with authorities and industry partners where appropriate. Additionally, Anthropic stated that organizations should treat AI API keys and agent integrations with the same scrutiny as production credentials.","labels":["security"],"sourceUrl":"https://www.securityweek.com/anthropic-says-russian-hackers-used-claude-ai-to-automate-malware-evasion/","publishedAt":"2026-09-11T08:47:07.000Z","cveId":null,"cweIds":null,"cvssScore":null,"cvssSeverity":null,"severity":"high","attackType":["prompt_injection","supply_chain"],"issueType":"news","affectedPackages":null,"affectedVendors":["Anthropic"],"affectedVendorsRaw":["Anthropic","Claude","Microsoft"],"classifierModel":"claude-haiku-4-5-20251001","classifierPromptVersion":"v3","cvssVector":null,"attackVector":null,"attackComplexity":null,"privilegesRequired":null,"userInteraction":null,"exploitMaturity":null,"epssScore":null,"patchAvailable":null,"disclosureDate":"2026-09-11T08:47:07.000Z","capecIds":null,"crossRefCount":0,"attackSophistication":"advanced","impactType":["confidentiality","integrity"],"aiComponentTargeted":"api","llmSpecific":true,"classifierConfidence":0.95,"researchCategory":null,"atlasIds":null}}