SECURITY·중요도 8·2026. 09. 11.·The Hacker News
Russian State-Sponsored Hackers Use Claude to Rebuild Malware After Detection
── KO ──────────────────
러시아 국가 지원 해커들이 클로드를 사용하여 악성코드를 재구성하는 캠페인을 시작했다.
Anthropic은 러시아 국가 지원 위협 세력이 클로드를 이용해 탐지 회피를 위한 AI 지원 워크플로우를 개발하고 있다는 캠페인을 중단했다고 밝혔다. 이 공격은 GTG-20006이라는 사이버 스파이 집단에 의해 수행된 것으로, 이는 Midnight과 연결된 더 넓은 보고와 일치한다.
── EN ──────────────────
Russian state-sponsored hackers have launched a campaign to rebuild malware using Claude.
Anthropic disclosed that it disrupted a campaign by a Russian state-sponsored threat actor who utilized Claude to develop an AI-assisted workflow to evade detection. This operation has been attributed to a cyber espionage group known as GTG-20006, aligning with broader reports linking this group to the Midnight threat cluster.