Artificial intelligence safeguards are often discussed in the abstract, focused on hypothetical existential risks or distant future scenarios. But a newly published threat intelligence report from Anthropic drags the conversation directly onto the modern battlefield.
The San Francisco-based AI lab has revealed a startling reality: its Claude model isn’t just being probed for vulnerabilities; it has been actively utilized as a virtual engineering team to write software for physical weapons systems.
Between December 2025 and August 2026, Anthropic’s threat team disrupted six separate operations aimed at developing conventional weapons and gathering intelligence.
While the lab blocked the accounts and shared the data with defense partners, the findings illustrate exactly how threat actors in Yemen, China, and Russia are weaponizing commercial AI.
Debugging a Failed Missile Launch with AI
The most alarming incident emerged from a northern Yemen weapons engineering cell. Houthi rebels control this territory. According to Anthropic, these threat actors ran three concurrent missile programs. One program targeted a multi-stage ballistic missile.
It had a range exceeding 2,000 kilometers. Another focused on the “R2000” set, which included a disturbing hypersonic glide vehicle variant.
The Yemen-based cell did not rely entirely on human specialists. Instead, they deployed Claude Code to build guidance, navigation, and control (GNC) software. This code steers and stabilizes flying vehicles.
They operated multiple Claude instances simultaneously. One wrote code. Another handled research. A third reviewed the output. They effectively treated the AI as an outsourced engineering department.
The model’s internal safeguards blocked many requests. However, the actors successfully evaded detection for quite some time. They integrated the software with a phone-class flight computer. Then, they conducted an actual field test. They test-fired the guided rocket, but it failed.
What happened next highlights a profound shift in asymmetric warfare. Within hours, the engineers returned to Claude. They fed the flight data back into the chatbot. They debugged their physical missile failure exactly like a developer troubleshooting a crashed mobile app.
Autonomous Swarms and Undersea Warfare
The Yemen incident is not an isolated anomaly. The report details a broader trend. State-linked and autonomous actors leverage commercially available AI to accelerate weapons development.
A China-based threat actor used Claude in another disrupted operation. They advanced three parallel tracks of work on an anti-torpedo weapons system.
They drafted exhaustive Chinese-language technical specifications and proposals. They also benchmarked designs directly against specific U.S. Navy anti-torpedo and anti-submarine programs.
Another Chinese operation built targeting software for electronic warfare. They also mapped supply chains for directed-energy weapons. Meanwhile, a Russia-based operation utilized Claude to engineer an autonomous military drone swarm. The actors relied on Claude Code to write and test logic.
This logic governed attack, observation, and return-to-base behaviors. They designed a system capable of lethal engagement without human intervention. Operators trained the AI on real combat footage from the Ukrainian front lines. They then flashed it directly onto physical circuit boards for hardware testing.
The Anthropic report exposes a critical vulnerability in the current AI ecosystem. Threat actors are bypassing guardrails through sophisticated evasion tactics such as hiding their end goals and splitting workloads across dozens of distinct, seemingly innocuous sessions so no single prompt triggers a safety violation.
This intelligence signals a permanent shift in global security. Advanced artificial intelligence is actively reducing the technical friction required to build complex kinetic weapons.
The barrier to entry for sophisticated missile guidance and autonomous warfare has fundamentally dropped, proving that defensive AI safeguards must evolve just as rapidly as the threats they are meant to contain.
Source: NDTV, "Anthropic Report: They Used Claude for Weapons Software, Then Returned to Check Why It Failed"




