Cyber Dispatch™️
398 subscribers
34 photos
2 videos
52 links
The definitive source for critical cybersecurity news. When a major threat breaks, we dispatch.

#CyberDispatch
Download Telegram
Anthropic says it blocked five attempts to exploit AI models for potential bioweapons development

Artificial intelligence firm Anthropic revealed Thursday that it blocked five separate attempts to misuse its Claude models for activities that could potentially aid in the development of biological weapons.
Cyber Dispatch™️
Anthropic says it blocked five attempts to exploit AI models for potential bioweapons development Artificial intelligence firm Anthropic revealed Thursday that it blocked five separate attempts to misuse its Claude models for activities that could potentially…
The incidents involved sensitive inquiries regarding chikungunya, avian influenza, and smallpox, including a case where a military-affiliated researcher sought assistance that raised concerns about generating deadlier viral variants.

The company's report also detailed attempts to bypass platform safeguards using fraudulent accounts and virtual private networks, alongside separate queries from Yemen concerning guided rocket development.

While Anthropic cautioned that detecting such capabilities does not prove malicious intent or a guarantee of success, the findings highlight mounting security risks as advanced AI systems lower technical barriers for specialized research.
Three threat clusters exploited Cisco FMC flaws to steal credentials, deploy Cyclops Blink, and push Qilin ransomware.

Both flaws are now in CISA’s KEV catalog. Federal agencies must patch CVE-2026-20079 by September 12.
PaperCut has replaced its emergency patches for two actively exploited flaws with fully tested maintenance releases.

The flaws have been used to bypass authentication and execute arbitrary code. Versions 26.0.5, 25.0.13, and 24.1.10 include the fixes and added hardening.
A crafted Sogou Input Method link led to GRAYRABBIT malware.

China-linked UNC3569 abused Sogou’s sgbiz: handler to open a malicious page in its built-in Chromium 80 browser, then exploited CVE-2021-38003 to run code with the logged-in user’s privileges.
Attackers chained two JFrog Artifactory flaws to gain admin control and plant backdoors.

Only unupdated self-hosted servers were open to that chain. A separate critical auth bypass also drew 406,000 exploitation attempts in one day.
Kash Patel wanted FBI staff to run an influence campaign on X by replying to Epstein tweets with bureau stats.

He then asked his spokesman to reply to IfindRetards' post, saying it had gotten 277k responses.

His spokesman corrected him: it had 277k views and just 400 replies. He also warned that engaging "would look bad on you."
Universal Music Group and ElevenLabs are building an AI platform that will let fans remix, mash up and reinterpret songs from UMG artists.

It's the first major-label deal for ElevenLabs, a company known for AI voice cloning. The companies also promise "personalized vocal experiences," without saying what that means

In May, UMG announced a similar AI covers and remix feature with Spotify.
A new Android malware strain called Mantax Otax combines ransomware and spyware capabilities to encrypt files, steal sensitive data, and spam and harass victims.

Indonesian operators distribute the malware through malicious APKs hosted outside Google Play, targeting users with phishing and social engineering messages.

After installation, the malware requests permission to use the Accessibility service, which gives it extensive control over compromised devices.
They put tracking in your OS
They put tracking in your car
They put tracking in your watch
They put tracking in your phone
They put tracking in your comms
They put tracking in your browser

@CyberDispatch
Houthis Used Claude Code to Develop Missile Guidance Software: Anthropic
A hacker broke into two companies, extorted them, and also collected bug bounty payouts of $2,000 and $5,000 from those same companies for reporting flaws.

Anthropic describes the operator as one of several suspected ShinyHunters affiliates using Claude across the full intrusion chain.

The same actor scraped bug bounty submissions as reconnaissance before going after specific targets.
Cyber Dispatch™️
A hacker broke into two companies, extorted them, and also collected bug bounty payouts of $2,000 and $5,000 from those same companies for reporting flaws. Anthropic describes the operator as one of several suspected ShinyHunters affiliates using Claude across…
One breach went from first access to bulk data theft in hours.

Another went from a single stolen developer token to full administrative control of the victim's cloud environment in roughly three hours, with AI agents doing nearly all the work.
Iran's culture ministry used Claude to plan the funeral of their Supreme Leader.

Anthropic says an account of the Islamic Culture and Communications Organization used Claude over VPNs using foreign phone numbers.

They named their institutions, roles and cities in the conversations. And they used their official branding.
GitLab’s CVSS 10 file-read flaw (CVE-2026-85706) drew in-the-wild probes within hours of disclosure.

If an instance has at least one public project, unauthenticated attackers can read logs and config files containing credentials and secrets.
151 million Claude exchanges in one Alibaba-affiliated distillation campaign.

Anthropic says it was part of a broader operation involving seven China-based AI labs, with some using proxy networks, fraudulent accounts, and rerouted user requests to harvest Claude capabilities.
Russian state-sponsored hackers used Claude to rebuild malware whenever security tools detected it.

Anthropic says GTG-20006 also used AI for phishing infrastructure and C2 monitoring while targeting more than 20 organizations.
Anthropic just banned S2T Unlocking Cyberspace — an Israeli-Singaporean spy firm — for using Claude to profile Iranians & Gulf citizens.

The platform sorted people into 6 demographic groups, scored their loyalty to govt, and prepped 255 fake accounts in 4 languages.
Cyber Dispatch™️
Anthropic just banned S2T Unlocking Cyberspace — an Israeli-Singaporean spy firm — for using Claude to profile Iranians & Gulf citizens. The platform sorted people into 6 demographic groups, scored their loyalty to govt, and prepped 255 fake accounts in 4…
The S2T scandal shows the gap between AI safety promises & reality.

Anthropic markets "Constitutional AI." Its own threat report reveals Claude was weaponized for mass surveillance — mapping dissidents across the Persian Gulf.
Cyber Dispatch™️
The S2T scandal shows the gap between AI safety promises & reality. Anthropic markets "Constitutional AI." Its own threat report reveals Claude was weaponized for mass surveillance — mapping dissidents across the Persian Gulf.
2023 Forbidden Stories leak: S2T Unlocking Cyberspace pitched militaries a tool to create fake social media accounts, infiltrate WhatsApp/Telegram groups, harvest member lists, then escalate to phishing & device compromise.

Offices in Singapore, Sri Lanka, UK & Israel. This was 3 years before the Claude ban.
Cyber Dispatch™️
2023 Forbidden Stories leak: S2T Unlocking Cyberspace pitched militaries a tool to create fake social media accounts, infiltrate WhatsApp/Telegram groups, harvest member lists, then escalate to phishing & device compromise. Offices in Singapore, Sri Lanka…
The 2023 Story Killers investigation found S2T's brochure marketed surveillance tools for use against journalists & activists — not just criminals.

Automated phishing. Mass tracking databases. Influence ops.

One named officer: Ori Sasson, a Singaporean national.