18 pointsby mrln6 hours ago3 comments
  • mzs5 hours ago
    > https://www.anthropic.com/threat-intelligence-report-septemb...

    GTG-30005: Military reconnaissance

    Naval reconnaissance

    In another investigation, we identified and disrupted an Iran-nexus threat actor that used Claude to collect and analyze publicly accessible data to develop targeting recommendations against US naval forces in the region. The threat actor used Claude to compile targeting handbooks, through a Python pipeline the threat actor built with Claude’s assistance, to identify and track naval positions based on open-source information. The compiled material included a roster of US personnel scraped from captions on public military photographs; publicly accessible ship and aircraft transponder identifiers; commercial satellite-imagery query scripts; and an inventory of public websites that exposed US naval movements. The threat actor also directed Claude to compile vulnerability research on shipboard systems, cataloging known CVEs in maritime VSAT terminals, Cisco communications equipment, and industrial control products.

    We banned the actor’s account, developed detections to reduce the risk of future misuse, and shared threat intelligence with government authorities to disrupt the threat.

  • sybercecurity6 hours ago
    Anthropic really leaning into that "No Such Thing as Bad Press" theory aren't they?