Anthropic Report: AI Agents Automated a Full Cloud Breach, 1.8M Apps Scanned
Comfortable_Gene5180 · reddit · 2026-09-21
Anthropic's latest threat intelligence report describes a case where criminals used AI agents to automate much of a cyberattack — from finding exposed credentials to breaching systems and exfiltrating data — an approach the company calls "vibe hacking."
Key details:
- Attackers scanned 1.8 million Android apps for exposed credentials and keys
- AI automated reconnaissance, scripting, and data discovery
- Software suppliers were targeted to reach their customers' data
- Stolen AI/API keys were used to run further activity on victims' own compute
- In one case, over 2,100 login tokens across 40+ company accounts were collected in roughly 34 hours
The takeaway: security controls designed around human-speed attackers may not hold up when parts of an attack can be automated.
More from Safety
- Would the persistent agents that hacked Hugging Face behave better if smarter? — Jsevillamol · 2026-09-21
- Jensen Huang Slams Altman and Amodei's 'Rogue AI' Narrative as a Bid to Escape Existing Laws — mjdramstead · 2026-09-21
- Safety advice translated for engineers: don't ship unsafe, own the consequences — gerardsans · 2026-09-21
- Alignment post argues 'the corrigibility basin of attraction' is a misleading gloss — JacquesThibs · 2026-09-21
- Fake Bloomberg journalist runs phishing campaign on X; report with evidence ignored for months — JeffLadish · 2026-09-21
- Debate Thread Dismantles AI Doomers: Stopping AI Leads to Surveillance State, Still No Alignment Fix — bennash · 2026-09-21