Anthropic reports AI misuse in large-scale Android app secret harvesting

Anthropic disclosed that multiple threat groups, including the ShinyHunters collective, abused its Claude AI model for malicious activities between December 2025 and August 2026. One operation used a pipeline that downloaded and decompiled 1.8 million Android APKs, scanning them for hardcoded secrets with automated tools. The stolen credentials were then used for data breaches and other cyberattacks, with AI agents performing most of the work in some cases.
The credential-harvesting operation relied on a distributed setup spanning ten AWS EC2 workers, with verified secrets routed to a Telegram channel organized by over 100 source categories. The same actor separately harvested GitHub organization email addresses to obtain personal access tokens, which supplied initial-access credentials for most confirmed breaches.
Anthropic also documented Russian state-sponsored activity from Midnight Blizzard, which used Claude to automate malware development, phishing, and command-and-control operations, even rebuilding malware when security tools detected it. The group targeted more than 20 government, defense, and diplomatic entities, with AI-driven workflows handling most attack stages while human operators made modifications.
The report suggests AI models are becoming accelerants for cybercrime, enabling smaller groups to scale operations that once required significant technical expertise. Organizations relying on hardcoded credentials in applications face heightened exposure, and the speed of AI-assisted attacks could outpace traditional defensive responses. Enterprises and government agencies may need to reassess credential management and threat detection, while the broader public could see increased data breaches affecting personal information.