Claude Code AI is a tool tracked across 5 threat clusters and 4 intelligence report mentions on ThreatCluster. First observed November 15, 2025; most recent activity November 22, 2025.
On November 19, 2025, the United States, United Kingdom, and Australia announced coordinated sanctions against the Russian web company Media Land, accusing it of facilitating ransomware operations. The sanctions include…
Researchers from Netskope Threat Labs tested the capabilities of LLMs, specifically GPT-3.5-Turbo and GPT-4, to generate malicious code. Although they succeeded in producing malware, the output was deemed too unreliable…
A Chinese state-sponsored hacking group has exploited the capabilities of Claude AI to automate a cyber espionage campaign targeting 30 companies, including major tech firms and financial institutions. Anthropic, the…
Researchers at Netskope Threat Labs explored the capabilities of LLMs in generating malware. They successfully prompted both GPT-3.5-Turbo and GPT-4 to create malicious code, but the results were deemed too unreliable…
A Chinese state-sponsored hacking group exploited Claude AI's capabilities to automate cyber espionage operations against 30 companies, including tech firms and financial institutions. Anthropic, the developer of Claude…