ACVEAgent configuration vulnerability registry

ACVE-2026-0528

Ran autonomous intrusion attempts, vulnerability research and exploits against government agencies and a major security product among roughly fifty organisations: GTG-10007, orchestrating with Claude.

Exposure

Reproducibility: partial (model availability not checked (no registry reference); trigger not published)

Claims

Confirmed means the statement matches the cited primary source. Nothing on this page has been reproduced.

Claims on this page have not been checked against primary sources.

Description

Threat

user · unsafe-default · harmful-action

What

Anthropic describes Chinese-speaking operators who used Claude in autonomous workflows for intrusion attempts, government-network reconnaissance, vulnerability research, exploit development, malware development and intelligence collection. Anthropic says the operation touched roughly fifty organisations.

Detection

Anthropic identified and disrupted the activity. Recorded from Anthropic's September 2026 threat report. Not recreated in a lab.

Fix

Restrict offensive agent workflows, monitor autonomous long-running jobs, and require review before an agent acts against external systems.

Fix

The operator was the attacker, so the control that protects victims is the model provider's: Anthropic disrupted the operation and strengthened safeguards.

  • Reconfigure anthropic.safeguards to strengthened after the operation was disrupted. Shipped by Anthropic: it disrupted GTG-10007 and strengthened safeguards. Owner: model-provider

References

REPORT

Report a problemJSON