Back to News
SecurityAI Understanding briefing

Anthropic report details Iranian and Houthi use of Claude for weapons

Anthropic's September 2026 threat report reveals that Iran-linked actors and Houthi rebels used Claude AI to target U.S. naval forces, develop hypersonic missile guidance systems, and build mass surveillance tools.

5 min readRead the primary source
Source-provided image accompanying Anthropic report details Iranian and Houthi use of Claude for weapons
Attributed reportingSource recorded
Publisher
tomshardware.com
Source link
tomshardware.comhttps://www.tomshardware.com/tech-industry/artificial-intelligence/iran-and-houthi-rebels-used-anthropics-claude-ai-to-target-us-warships-and-build-hypersonic-missiles-houthi-rebels-also-used-the-bot-to-code-ballistic-missile-guidance-systems
Source type
Reporting by a news outlet — not a first-party document.

What we could not confirm independently: This claim is attributed to the named outlet. We did not verify it against a first-party document. (tomshardware.com)

Story last revised

ContextUnderstand this in 60 seconds

Start here

Key terms

AI Safety
A field focused on reducing harmful behavior, failures, and misuse risks in AI systems.
Pipeline
An ordered workflow of preprocessing, model steps, and postprocessing stages.
Test yourselfAI Ethics Quiz

What happened

Anthropic's September 2026 threat report, as reported by Tom's Hardware, documents specific instances of Iranian and Houthi actors using Claude for military and surveillance purposes. An Iran-linked actor used the model to generate targeting recommendations against U.S. Navy ships by combining public transponder data, satellite imagery, and personnel names from photo captions. The actor also researched vulnerabilities in specific communications equipment. Separately, a Houthi cell in northern Yemen used Claude Code to develop software for three weapons programs, including a multistage ballistic missile and a hypersonic glide vehicle variant. The group used the AI for coding, code review, and flight simulations. Additionally, Iranian security units used Claude to analyze over 155,000 tweets to profile 6,388 opposition individuals and to develop a Firefox extension for mass-harvesting user identities. Anthropic stated it banned 16 associated accounts and shared findings with government authorities.

According to Tom's Hardware, Anthropic's September 2026 threat report identified an Iran-linked threat actor that used Claude to support military reconnaissance against U.S. naval forces in the Middle East. The actor combined publicly available ship and aircraft transponder identifiers with commercial satellite imagery and information on U.S. naval movements. The report states the actor also extracted names of U.S. military personnel from captions of publicly available military photographs and researched potential vulnerabilities in communications equipment used aboard ships, including known flaws affecting Cobham Sailor VSAT terminals, Cisco communications equipment, and Schneider Electric EcoStruxure systems.

The report details a separate case involving a Houthi cell in northern Yemen that used Claude Code to support three weapons programs. These included a guided rocket using a phone-class flight computer for terminal guidance, a multistage ballistic missile with a range exceeding 2,000 km, and an R2000 missile family that included a hypersonic glide vehicle variant. The group used Claude to develop guidance, navigation, and control software, integrate an open-source autopilot with a phone-class flight computer, write control and position-estimation code, tune parameters, build firmware, and run flight simulations. The report notes the group used multiple Claude instances to replace the work of a group of software engineers for coding, code review, research, and simulation.

Beyond weapons development, the report highlights the use of Claude for surveillance by Iranian security-linked units. One unit used the model to analyze 155,216 tweets to profile, identify, and surveil 6,388 opposition individuals in a single year. Another group used the model as an engineering pipeline to develop domestic tracking tools, including the production-deployed 'al-Najm al-thāqib' Firefox extension designed to mass-harvest user identities across major social platforms. Anthropic stated it banned 16 Claude accounts associated with Iranian paramilitary and domestic security agencies and shared its findings with government authorities, but noted that this does not mean all associated accounts have been banned.

The report also mentions that China and Russia are actively using Claude for their military programs, though specific details for these actors are not provided in the source text. The source emphasizes that while Houthis are technically not Iranian, they can share research and development results with their allies and potentially use Iran's industrial capacity to build their weapons.

Source details: tomshardware.com

Why it matters

This report provides concrete, documented evidence that frontier AI models are being actively exploited by state-aligned actors for offensive military applications, including weapons development and strategic targeting. It moves the discussion of AI safety from theoretical risks to observed, high-stakes misuse. The specific details regarding the use of Claude Code for missile guidance and the analysis of naval vulnerabilities highlight the practical capabilities of current LLMs in complex engineering and intelligence tasks. This has immediate implications for national security, export controls, and the need for robust detection and mitigation strategies by AI developers. It also underscores the difficulty of preventing misuse when models are widely accessible, even with account bans, as the report notes that not all associated accounts may have been identified or banned.

The report provides specific, documented examples of frontier AI being used for offensive military purposes, moving beyond theoretical concerns to observed reality. The use of Claude for targeting U.S. naval forces and developing hypersonic missile guidance systems demonstrates the practical capability of current LLMs to assist in complex, high-stakes engineering and intelligence tasks.

This has significant implications for national security and the geopolitical landscape. It highlights the vulnerability of relying on commercial AI models that are accessible to hostile actors, even with account bans. The report's detail on the specific types of vulnerabilities researched (e.g., Cobham Sailor VSAT terminals) suggests that AI can accelerate the identification of security weaknesses in critical infrastructure.

The findings underscore the need for robust detection and mitigation strategies by AI developers. The fact that Anthropic had to ban 16 accounts and introduce additional detection mechanisms indicates that current safeguards are insufficient to prevent state-sponsored misuse. This may lead to increased pressure on AI companies to implement more stringent access controls and monitoring.

The report also has implications for export controls and international policy. The use of U.S.-built AI technology by Iran and its allies to target U.S. forces and develop weapons could influence future policy decisions regarding the export of AI technology and the regulation of its use by foreign actors.

What to watch next

Monitor for further disclosures from Anthropic or other AI labs regarding state-sponsored misuse of their models. Watch for U.S. government responses, including potential new export controls, sanctions, or legislative actions aimed at restricting access to frontier AI models for hostile actors. Observe whether other AI companies release similar threat reports detailing specific misuse cases. Track the development of technical countermeasures, such as advanced detection mechanisms for malicious prompts or usage patterns, that AI labs may deploy in response to these findings.

Monitor for further disclosures from Anthropic or other AI labs regarding state-sponsored misuse of their models. Additional reports may reveal more specific details about the types of tasks being performed and the extent of the misuse.

Watch for U.S. government responses, including potential new export controls, sanctions, or legislative actions aimed at restricting access to frontier AI models for hostile actors. The report's findings may serve as a catalyst for such actions.

Observe whether other AI companies release similar threat reports detailing specific misuse cases. This could lead to a broader industry-wide effort to address the issue of state-sponsored misuse of AI.

Track the development of technical countermeasures, such as advanced detection mechanisms for malicious prompts or usage patterns, that AI labs may deploy in response to these findings. The effectiveness of these countermeasures will be crucial in preventing future misuse.

Related guides & quizzes

AI EthicsFuture of AIAI Models ExplainedTest what you know — try a free AI quizLook up an AI term in our glossary
Found this useful?