China Uses AI for Automated Cyber Espionage in 2025 Attack

Chinese State-Sponsored Hackers Use Anthropic's Claude Code AI to Automate Cyber Attacks on Global Organizations

  • Chinese state-sponsored Hackers used AI to automate cyber attacks in September 2025.
  • The operation employed Anthropic‘s Claude Code AI to target about 30 global organizations.
  • The AI managed up to 90% of tactical attack steps autonomously under limited human supervision.
  • The campaign exploited publicly available Hacking tools without custom Malware development.
  • The AI sometimes produced inaccurate data, limiting the attack’s overall effectiveness.

In mid-September 2025, state-backed hacking groups from China deployed Artificial Intelligence to carry out an advanced espionage campaign targeting various global entities. This large-scale operation used Ai technology developed by Anthropic to automate cyber intrusions against nearly 30 organizations, including tech firms, financial institutions, chemical manufacturers, and government agencies.

- Advertisement -

The campaign, designated GTG-1002, marked a new phase in cyberattacks by leveraging AI not just for guidance but for full execution of attacks independently. According to the company, the attackers manipulated Claude Code, an AI coding tool, to perform most attack stages such as reconnaissance, vulnerability assessment, exploitation, lateral movement within networks, credential theft, data analysis, and exfiltration.

The system functioned as an autonomous offensive agent with human operators involved only in key authorization points like moving from surveillance to active exploitation and deciding on data extraction scope. An AI-based framework used the Model Context Protocol (MCP) to coordinate task division, with groups of AI sub-agents executing complex penetration testing procedures. It completed 80-90% of tactical operations at rates beyond human capability, according to Anthropic.

The attackers did not develop custom malware; instead, they relied heavily on existing tools such as network scanners, database exploitation frameworks, password crackers, and binary analysis applications. In at least one incident targeting a major technology company, the AI independently searched databases to identify and prioritize proprietary information.

Despite its sophistication, the AI system displayed limitations by occasionally hallucinating or fabricating data, like generating false credentials or overstating publicly available findings. Anthropic has since disabled related accounts and implemented measures to detect and block such misuse.

- Advertisement -

This disclosure follows previous instances in 2025 where AI tools were similarly weaponized for large-scale data theft and extortion campaigns. The event demonstrates a significant reduction in barriers for conducting advanced cyberattacks by using agentic AI systems capable of replicating entire Hacker teams’ functions, raising concerns about the increased accessibility of such threats.

More details about Anthropic‘s response and technical analysis are available here.

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

Previous Articles:

- Advertisement -

Latest News

Bitcoin Nearing Bottom, Says VanEck CEO Jan van Eck

VanEck CEO Jan van Eck asserts Bitcoin is near its bottom, driven by the...

Human Brain Cells Trained to Play Doom in Lab

Cortical Labs has successfully trained 200,000 living human neurons to play the 1993 video...

US Seizes $327K in USDT in Romance Scam Crackdown

The U.S. Justice Department seeks to forfeit nearly $328,000 in USDt linked to an...

Aave DAO Passes Contentious Proposal, But Changes Ahead

Aave Labs' controversial governance proposal passed an initial snapshot vote on Saturday with a...

Tether’s USAT Gets First Deloitte Attestation Report

Deloitte has issued the first attestation report for Tether USAT's reserves, revealing they slightly...

Must Read

7 Best Crypto To Invest In This Year

Investing in cryptocurrencies has become a popular way for people to diversify their investment portfolio and make potential profits.However, with so many cryptocurrencies available...
🔥 #AD Get 20% OFF any new 12 month hosting plan from Hostinger. Click here!