Skip to main content
LLMgram · AI News · 2026-09-11

Anthropic threat report maps eight months of Claude abuse and 151M Qwen distillation exchanges

Anthropic threat report maps eight months of Claude abuse and 151M Qwen distillation exchanges

Anthropic published a new threat intelligence report covering eight months of documented Claude misuse spanning industrial-scale model distillation and dual-use military applications. According to The Decoder and Bloomberg, Chinese AI labs including Alibaba's Qwen team, DeepSeek, and Moonshot AI relayed requests en masse or extracted training data, with Qwen alone accounting for more than 151 million exchanges. Anthropic says it disrupted actors who used Claude for missile guidance software, autonomous kamikaze drone swarms, nationwide surveillance, financial fraud, and attempted bioweapon research. Iran, Russia, and a Yemen-based cell in an Iran-backed Houthi area were among those named in Bloomberg coverage. The disclosures mark a shift toward active provider enforcement, though reporting has not verified whether scraped exchanges were incorporated into rival models.

Sources

Anthropic threat report maps eight months of Claude abuse and 151M Qwen distillation exchanges

Anthropic threat report maps eight months of Claude abuse and 151M Qwen distillation exchanges

Anthropic's new threat intelligence report documents eight months of Claude abuse. Actors also used Claude for missile software, autonomous kamikaze drones, and nationwide surveillance systems.

Key takeaway

Anthropic's eight-month threat report shows frontier model APIs face industrial-scale distillation and active weapons misuse at the same time.

What happened

Anthropic's new threat intelligence report documents eight months of Claude abuse, according to The Decoder. Chinese AI labs including Alibaba's Qwen team, DeepSeek, and Moonshot AI relayed requests en masse or extracted training data, with Qwen alone accounting for more than 151 million exchanges.

Bloomberg reports that Anthropic disrupted a Yemen-based guided weapons engineering cell using Claude to develop missile guidance software in northern Yemen, where Iran-backed Houthi militants operate. Anthropic PBC also says Claude was misused for kamikaze drone swarms, missile navigation systems, biological weapons, surveillance, and fraud, with state-sponsored actors using U.S. proxies to evade identification.

Evidence

  • Anthropic's threat report covers eight months of Claude abuse including industrial-scale data extraction by Chinese labs.

    The Decoder · attributed

    Anthropic's new threat intelligence report documents eight months of Claude abuse. Chinese AI labs like Alibaba's Qwen team, DeepSeek, and Moonshot AI relayed requests en masse or extracted training data, with Qwen alone accounting for more than 151 million exchanges.

  • Anthropic disrupted a Yemen-based cell using Claude for missile guidance software.

    Bloomberg Technology · attributed

    Anthropic PBC uncovered a group in northern Yemen — where Iran-backed Houthi militants operate — using its Claude AI model to support the development of missile and rocket systems

  • Iran and Russia used Claude for weapons research including drone swarms and biological weapons.

    Bloomberg Technology · attributed

    Anthropic PBC says its artificial intelligence model Claude has been misused in attempts to develop a wide range of potential military applications, including kamikaze drone swarms, missile navigation systems and biological weapons.

  • Anthropic says it stopped surveillance and fraud operations using Claude.

    Le Figaro IA · attributed

    Anthropic says it has stopped multiple surveillance and fraud operations carried out by its AI Claude

  • Anthropic thwarted bioweapon research from state-sponsored actors using covert U.S. proxy accounts.

    Tom's Hardware AI · attributed

    Anthropic says Claude thwarted bioweapon research from state-sponsored actors — covert accounts used U.S. proxies to attempt to engineer deadlier viruses, tried to evade identification and regional blocks

  • Chinese AI labs secretly used millions of Claude exchanges to train their models.

    CNBC AI · attributed

    Chinese AI labs secretly used millions of Claude exchanges to train their models, Anthropic says

Why it matters

Operators should treat API access as a monitored security surface where abnormal traffic patterns may trigger enforcement that blocks legitimate workloads.

Limits and uncertainties

Reporting in the packet does not verify whether extracted Claude exchanges were successfully used to improve competitor models.

The packet does not clarify whether Anthropic's countermeasures have effectively mitigated ongoing abuse or how misuse was detected.

CNBC and other excerpts lack technical specifics on how large-scale scraping was identified or proven.

Practical implications

Builders should assume API outputs are high-value extraction targets and plan rate limiting, anomaly detection, and strict usage policies.

Operators may face sudden API restrictions when provider threat intelligence flags usage patterns linked to dual-use or distillation abuse.

What to watch

Whether Anthropic publishes follow-up metrics on blocked distillation attempts and weapons-related misuse after this eight-month report.

Independent verification of whether Chinese labs incorporated scraped Claude exchanges into shipped model updates.

How other frontier providers respond with anti-distillation controls and active disruption disclosures.

Sources

LLMgram editorial selection and synthesis · @llmgram. LLMgram is not the original publisher of this information.
Continue on LLMgram: Open in AI Signal →
Original reporting: How hackers used Claude for missiles, drone swarms, and surveillance, while Chinese labs mined it for training data