• News/
  • https://www.theregister.com/2025/11/13/chinese_spies_claude_attacks/

Chinese spies told Claude to break into about 30 critical orgs. Some attacks succeeded

The Register
·
Jessica Lyons
·
Published Nov 13, 2025
·
Updated

Chinese cyber spies used Anthropic's Claude Code AI tool to attempt digital break-ins at about 30 high-profile companies and government organizations – and the government-backed snoops "succeeded in a small number of cases," according to a Thursday report from the AI company. The mid-September operation targeted large tech companies, financial institutions, chemical manufacturers, and government agencies. The threat actor was able to induce Claude to execute individual components of attack chains While a human selected the targets, "this marks the first documented case of agentic AI successfully obtaining access to confirmed high-value targets for intelligence collection, including major technology corporations and government agencies," Anthropic's threat hunters wrote in a 13-page document [PDF]. It's also further proof that attackers continue experimenting with AI to run their offensive operations. The incident also suggests heavily funded state-sponsored groups are getting better at autonomizing attacks. The AI vendor tracks the Chinese state-sponsored group behind the espionage campaign as GTG-1002, and says its operatives used Claude Code and Model Context Protocol (MCP) to run the attacks without a human in the tactical execution loop. A human-developed framework used Claude to orchestrate multi-stage attacks, which were then carried out by several Claude sub-agents all performing specific tasks. Those chores included mapping attack surfaces, scanning organizations' inf...

Read full article

Affected Software

1 affected component
anthropic Claude Code
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the main topic of this article?

The article discusses Chinese cyber spies using Anthropic's Claude Code AI tool to attempt digital break-ins at various organizations.

2

What security implications are discussed?

The article highlights the security risks posed by AI tools being exploited by state-sponsored hackers for targeted attacks.

3

What organizations were targeted in the attacks?

Approximately 30 high-profile companies and government organizations were targeted by the Chinese cyber spies.

4

What product or software is primarily implicated in the cyber attacks?

The primary software implicated in the cyber attacks is Anthropic's Claude Code AI tool.

5

What was the outcome of these cyber espionage attempts?

The attempts led to successful breaches in a small number of cases.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203