On Anthropic’s AI Misuse Report
Schneier summarizes Anthropic's Claude misuse report: 117 findings covering AI-driven reconnaissance, exploitation, credential theft, phishing, and influence operations.
Anthropic published a report detailing all detected misuses of Claude, which Daniel Meissler condensed into 117 findings. Attackers used AI agents to industrialize reconnaissance, exploitation, data theft, phishing, vulnerability research, and cloud compromise, while humans selected targets and reviewed outputs. Influence operations employed fake news sites, fabricated journalists, synthetic personas, and multilingual content, and surveillance cases included automated dossiers and transnational targeting. The report does not establish completed biological weapons or operational battlefield deployment.
- Anthropic report documents 117 findings of detected Claude misuse
- AI agents automated reconnaissance, exploitation, credential theft, and phishing workflows
- Influence ops used synthetic personas, fake news sites, persistent agent memory
- Surveillance cases included automated dossiers and transnational targeting
- No completed biological weapons or battlefield deployment established
Full article182 words · extracted from schneier.com · click to collapse
Earlier this month, Anthropic published a long report detailing all of the Claude misuses it detected. Daniel Meissler usefully summarized the report into 117 findings.
A few of the highlights:
- AI agents increasingly handled reconnaissance, exploitation, data theft, propaganda production, surveillance workflows, and research while humans selected targets, set goals, and reviewed important outputs.
- The report describes attackers using AI to industrialize credential theft, cloud compromise, phishing, vulnerability research, and the extraction of sensitive data from downstream organizations.
- Influence operations used persistent agent memory, fake news sites, fabricated journalists, synthetic personas, political profiling, and large-scale multilingual content, although high content volume often produced little genuine engagement.
- Surveillance and repression cases included automated dossiers, biometric and communications analysis, transnational targeting, coercive recruitment, and systems that continued operating locally after model access was revoked.
- Biological and weapons cases show dual-use risk: AI supported advanced scientific and military work, but the report generally doesn’t establish completed biological weapons or operational battlefield deployment.
Sidebar photo of Bruce Schneier by Joe MacInnis.
Text extracted automatically; images, tables and formatting may be missing. Original: https://www.schneier.com/blog/archives/2026/09/on-anthropics-ai-misuse-report.html