Detect Deepfakesby Resemble AI
Agentic AI attack

Technology provider agentic AI attack — Sep 2026

Anthropic reports that threat actors are utilizing autonomous AI agents to accelerate cyberattacks, enabling data theft and system breaches against major.

Reported date
Sep 22, 2026
Target
technology provider, airline, and software provider
Agent type
Other AI agent
Agent role
Used by the attacker

The exact incident date was not established. This entry is dated by its source report.

Updated Sep 24, 2026 · 2 min read

Overview

Anthropic has reported a significant shift in the cyber threat landscape, where malicious actors are increasingly delegating complex attack stages to autonomous AI agents. This transition allows for the execution of cyberattacks at a speed and scale that previously required teams of skilled human operators, with some breaches reaching completion in as little as two to three hours.

What happened

According to Anthropic’s threat-intelligence investigation, attackers are employing AI systems to conduct reconnaissance, exploit vulnerabilities, harvest credentials, and perform data theft. These operations often utilize a lead agent to decompose complex objectives into smaller tasks, which are then dispatched to multiple subagents working in parallel. In the most autonomous instances observed, these systems operated against multiple victims simultaneously for hours or days with minimal human oversight.

Specific incidents highlighted by Anthropic include:

  • Technology Provider: Attackers exfiltrated over a terabyte of data, which included hundreds of thousands of national identifiers and millions of payment-card records.
  • Airline: Threat actors gained access to systems containing tens of millions of passenger records.
  • Software Provider: A supply-chain attack allowed for the extraction of data from approximately 200 downstream customer organizations.

Despite the high level of automation, Anthropic noted that these attacks generally rely on familiar methods, such as phishing, SQL injection, the use of stolen credentials, and the exploitation of unpatched devices or exposed services. The primary change is the delegation of labor-intensive tasks—such as writing tools, running commands, and analyzing stolen data—to AI models.

Anthropic emphasized that humans remain involved in critical decision-making processes, such as target selection and the monetization of stolen information. While the company has banned accounts linked to these malicious operations and implemented new detection measures, it warns that the use of AI agents is lowering the barrier to entry for cybercrime, making it possible for individual actors to perform work that once required large, specialized teams.

Evidence in the reporting

Incident evidence
Some of the compromises Anthropic uncovered were substantial
Agent involvement
these systems conducted reconnaissance, exploitation and theft against several victims

Sources