AI is replacing attackers
The Anthropic report said that the company is finding more evidence that genAI tools are no longer helping cyberattackers so much as they are replacing them.
“A cybercriminal used Claude Code to conduct a scaled data extortion operation across multiple international targets in a short timeframe. This threat actor leveraged Claude’s code execution environment to automate reconnaissance, credential harvesting, and network penetration at scale, potentially affecting at least 17 distinct organizations in just the last month, across government, healthcare, emergency services, and religious institutions, “ the report said.
It added, “the operation demonstrates a concerning evolution in AI-assisted cybercrime, where AI serves as both a technical consultant and active operator, enabling attacks that would be more difficult and time-consuming for individual actors to execute manually. This approach, which security researchers have termed vibe hacking, represents a fundamental shift in how cybercriminals can scale their operations. The actor demonstrated unprecedented integration of artificial intelligence throughout their attack lifecycle, with Claude Code supporting reconnaissance, exploitation, lateral movement, and data exfiltration.”