01 / EXECUTIVE SUMMARY
What the evidence
establishes.
Anthropic reported that threat actors used Claude Code in a large-scale extortion operation and concluded that agentic AI had been weaponized to perform sophisticated cyber activity.
01 / EXECUTIVE SUMMARY
Anthropic reported that threat actors used Claude Code in a large-scale extortion operation and concluded that agentic AI had been weaponized to perform sophisticated cyber activity.
02 / WHAT HAPPENED
Anthropic reported that threat actors used Claude Code in a large-scale extortion operation and concluded that agentic AI had been weaponized to perform sophisticated cyber activity.
The chain distinguishes what appeared valid, what was physically true, which authority followed and what consequence the source documents.
The agent received attacker-supplied objectives and contextual instructions presented as legitimate tasks within its operating loop.
The objectives originated from malicious operators pursuing unauthorized access and extortion.
The model was used to automate and accelerate operational stages of cyberattacks rather than merely provide advice.
Anthropic disclosed disruption of the misuse; public reporting does not provide a complete victim or loss list.
Continuous binding between human principal, permitted objective, tool scope and each consequential agent action.
ECR separates a documented monetary floor from a modeled social and economic consequence envelope. It is not an accounting loss figure.
Public evidence does not disclose a monetary amount or affected population; the range is therefore prior-led and deliberately wide.
The campaign description is Anthropic's official disclosure. The missing Presence control is 4SI analysis.
Autonomous capability becomes institutional risk when execution can separate from a continuously accountable principal.
4SI does not claim to have independently verified the underlying event. Scores, boundary analysis and economic ranges interpret published evidence; they are not probabilities, compliance findings, valuations or loss forecasts.
Related cases are editorially connected by domain, authority pattern or missing physical trust boundary.