Russia used Claude AI for espionage, disinformation and drone swarms

Euronews · collected 2026-09-16 · by Irina Sheludkova
Read the original at Euronews ↗

Summary

Anthropic’s report reveals that Russian-linked hackers used its Claude AI model to carry out cyber-espionage against over 20 organizations, primarily targeting Ukraine but also including drone suppliers and other government entities. The same AI was employed in disinformation campaigns in Central African Republic (CAR) and Moldova, where a single operator ran pro-Kremlin content for Radio Lengo Songo in coordination with Russian state media outlets. Anthropic has since blocked these malicious activities and enhanced its security measures based on the findings.
Written by the local model on 2026-09-16, using this article's own text rather than the other coverage of the same event (that is the story summary below).

Signals How these are calculated →

Claims extracted
21
claim-shaped sentences
Uncertain
10%
2 of 21 hedged
Leaning
not political
takes no side on a contested political question
Correction & hedging signals
95.4
corrections and hedging in what we collected; not a measure of accuracy
Outlets on this story
4
Technology
Narrative spread
1
articles carrying this framing
Analyzed 2026-09-16 · how these are computed

AI analysis (generated at analysis time, not now)

Story summary

In a report published on September 12, 2026, Anthropic, an AI firm behind the Claude chatbot, revealed that it had uncovered a sophisticated influence operation linked to the UAE government. This campaign targeted UN experts and members of the Muslim Brotherhood using its AI model to generate reports, advocacy materials, social media content, and testimony aimed at undermining criticism of Abu Dhabi's role in Sudan's conflict. Since April 2023, Sudan has been embroiled in a war between the army and the paramilitary Rapid Support Forces (RSF), which the UN describes as one of the world’s worst humanitarian crises. The UAE has faced accusations from UN experts and others of supporting the RSF, allegations it denies. Anthropic traced this operation with high confidence to UAE government officials, who allegedly used around 300 fake social-media accounts, created a front NGO, and compiled files on European lawmakers, journalists, and UN officials.

Written for “AI Misuse And Threats” on 2026-09-17, grounded in this article and the 3 other(s) covering the same event.
Why this leaning score
This article does not take a side on a contested political question, so it has no leaning score. That is an answer rather than a gap: a match report or a rescue can be warmly or critically written without being left or right, and scoring it anyway is how approval of a subject gets recorded as a political position.
No political leaning scored for article 13783 · logged 2026-09-16

Story

📰 AI Misuse And Threats
Technology · 4 article(s) covering the same event. This is the one the site leads with.

How this is being covered How these are calculated →

Article leaning vs. publisher reliability
Source leaning vs. consistency

Compared with similar articles

This article reads unscored and hedges 10% of its claims. Each row says how that neighbour differs.
The Intercept
⚖️ leaning not scored 🔴 3% hedged 15 of 431 📰 publisher trust 97
“The articles discuss different uses of AI technology by different entities (U.S. government and Russia) for distinct purposes.”
September 13, 2026 different event · 95%
Letters from an American
⚖️ Leans left 🔴 15% hedged 10 of 65
“Article A discusses Dario Amodei's call to slow down AI advancements due to safety concerns, while Article B reports on Anthropic's findings about Russian misuse of their AI model for espionage and disinformation.”
The Hindu
⚖️ leaning not scored 🔴 0% hedged 0 of 3 📰 publisher trust 95
“Both articles discuss Anthropic's report on September 10, 2026, which details malicious activities involving Claude AI, including Russian cyber operations and disinformation campaigns.”
CBS News
⚖️ leaning not scored 🔴 0% hedged 0 of 1 📰 publisher trust 77
“While both articles discuss misuse of Anthropic's AI model Claude, they describe different aspects and outcomes of its use.”
Anatomy of an AI-powered hack different event · 90%
Semafor
⚖️ leaning not scored 🔴 10% hedged 3 of 30 📰 publisher trust 95
“Article A discusses Russian-linked hacking groups using Claude AI for various attacks and disinformation campaigns, while Article B describes a different incident where an unspecified hacker used frontier AI models to breach a European IT company with the help of Palo Alto Networks.”

Publisher

Euronews · 268 article(s) · 0 correction(s) detected
No corrections detected for this publisher. That may mean careful reporting, or simply that nothing has been checked.

Who wrote this

Irina Sheludkova
2 article(s) here · 0 carrying a prediction
🔮 In May 2025, Russia designated it an "undesirable organisation," a legal classification that bans its presence in Russia, criminalises its activities in the country and prevents it from openly collecting information there.
Also by Irina Sheludkova
Nothing else under this byline is closely related to this article, so these are simply their most recent.

Topics

Anthropic Claude Moldova Russia Russian

Subjects

Anthropic ORG · 9× Moldova GPE · 4× Russia GPE · 4× Russian NORP · 4× Wagner PERSON · 3× Bangui GPE · 2× CAR ORG · 2× SVR ORG · 2× Ukraine GPE · 2× Ukrainian NORP · 2×

Narrative

Disinformation in the CAR and Moldova Working alongside investigators from the All Eyes On Wagner project, Anthropic identified and removed an account operated by a Russian-speaking individual in Bangui who was running a disinformation operation for Radio Lengo Songo, a station set up and financed in 2017 by the Kremlin-run mercenary Wagner group.
framing: assertive · carried by 1 article(s) · first seen 2026-09-16
2026-09-16 · Euronews
Russia used Claude AI for espionage, disinformation and drone swarms · assertive framing

Claims (21 extracted, 2 hedged)

Anthropic's latest report on the abuse of its AI model found that a Russian-linked hacking group used Claude to automate attacks on more than 20 organisations, including Ukrainian defence ministries and drone suppliers, while separate operators ran pro-Kremlin disinformation in Africa and Moldova. asserted
operators → find → Africa
Russia used Anthropic's Claude AI model to accelerate cyber-espionage operations against Ukrainian and European government targets, run disinformation campaigns in Africa and Moldova, and develop targeting software for autonomous kamikaze drone swarms, the US company said in a report published this month. asserted
company → use → report
Anthropic said it had blocked all malicious activity identified in the report, used the findings to strengthen its security systems, and shared the information with government bodies and industry partners. asserted
it → say → bodies
In one major case, a hacking group designated GTG-20006 used Claude to automate operations against more than 20 organisations, including government ministries, defence and intelligence agencies, embassies, think tanks and defence-industrial companies, Anthropic said. asserted
Anthropic → designate → ministries
Ukraine was the primary target, with suppliers of military drone technology and their supply chains also among those attacked. asserted
Ukraine → attack → those
The group also targeted Middle Eastern and Asian government departments with links to maritime activity. asserted
group → target → activity
Anthropic said GTG-20006 is linked to Midnight Blizzard, a hacking group Western intelligence assessments attribute to Russia's foreign intelligence service SVR. asserted
assessments → say → service
The group used Claude across a range of operational modes: as an engineering assistant for writing malware, phishing kits and surveillance tools, as an executor of commands on victims' networks, including collecting credentials and extracting data under human direction, and in fully autonomous operations with minimal human oversight. asserted
group → use → oversight
Disinformation in the CAR and Moldova Working alongside investigators from the All Eyes On Wagner project, Anthropic identified and removed an account operated by a Russian-speaking individual in Bangui who was running a disinformation operation for Radio Lengo Songo, a station set up and financed in 2017 by the Kremlin-run mercenary Wagner group. asserted
who → work → group
The operator prepared daily pro-Russian content for the station in coordination with Russian state outlets RT, Sputnik Afrique and TASS, and with the local "Russian House" cultural centre — part of a network Russia uses as a political and influence hub abroad. asserted
Russia → prepare → hub
Content consistently promoted the CAR government and Wagner, and attacked France and domestic opposition figures, according to the All Eyes On Wagner investigation. uncertain
Content → promote → investigation
The operation was designed to appear locally run, with one person coordinating output while contracts, scripts and publications were presented as the work of a Bangui-based radio station. asserted
contracts → design → station
Anthropic investigators identified the individual through invoices for a Claude subscription issued in central Madrid. asserted
investigators → identify → Madrid
The operator was linked to Africa Politology, aka "The Company," the information and political technology arm of the African Corps — the successor to Wagner in Africa — which is reportedly controlled by the SVR. uncertain
which → link → SVR
In Moldova, a former regional head of the Russian state-run Sputnik media network used Claude as a content-production tool, adapting news, polling data, and opposition material to fit pro-Kremlin narratives, Anthropic said. asserted
Anthropic → run → narratives
Autonomous swarm drone warfare Anthropic identified and shut down a group of Russia-linked developers who used its Claude Code tool to write software for kamikaze drones, including an autonomous targeting system tested on real hardware. asserted
who → identify → hardware
The developers trained AI models on footage from combat operations in Ukraine and used a fixed location in the Donetsk region as a demonstration strike target. asserted
developers → train → target
The project's stated goal was a fully autonomous swarm of FPV kamikaze drones. asserted
goal → state → drones
Anthropic linked nine accounts involved in the project to a regional Russian university and a federal research centre connected to the Russian Academy of Sciences, without naming either institution. asserted
Anthropic → link → institution
Claude is officially unavailable in Russia, with access to Anthropic's website and API blocked and Russian bank cards not accepted for payment. asserted
cards → block → payment
The developers bypassed these restrictions by routing traffic through commercial virtual private servers (VPNs). asserted
developers → bypass → servers
💬 Give feedback
🕘 History 🎫 Support