Anthropic said it blocked Claude accounts linked to GTG-87001, a cell operating in Houthi-controlled northern Yemen, after detecting efforts to use its AI tools to develop guided-weapons capabilities. The users reportedly worked across multiple Claude sessions to conceal weapons intent while seeking help with autopilot integration, guidance, navigation and control software, position estimation, parameter tuning, firmware builds, flight simulations, and diagnosis of a failed guided-rocket test.
The activity reportedly included concepts for multiple hypersonic-glide missile variants and a mobile-phone-hardware-based maneuvering warhead, with Claude Code used for weapons-related software development. Anthropic said it found no evidence that an operational weapon was successfully fielded, though an offline simulation toolkit may remain usable after the accounts were disrupted. Analysts assess the effort may reflect a Houthi push to reduce dependence on Iranian weapons supplies, while noting the group is unlikely to possess the industrial and technical capacity required to produce hypersonic missiles; public reporting also noted that Anthropic has not released enough operational evidence to independently verify the cell’s real-world activity or intent.

Track how attackers are adapting to this technology.
5 events from the most recent confirmed update back to the earliest known activity.
Anthropic's September 2026 threat report said an Iran-linked actor used Claude with public transponder data, commercial satellite imagery, U.S. military information, and equipment-vulnerability research to generate targeting recommendations concerning U.S. naval forces in the Middle East. Anthropic said it banned the associated account, added detection mechanisms, and shared findings with government authorities.
Anthropic's September 2026 threat-intelligence report publicly described the northern Yemen-based cell and its alleged use of Claude to support guided-weapons development. Anthropic said it shared its findings with public- and private-sector partners.
After correlating activity across sessions and determining the alleged weapons purpose, Anthropic blocked the identified Claude accounts and many related requests. The company also identified an offline simulation toolkit that could function without Claude or other commercial engineering platforms.
Anthropic said the users tested a guided rocket unsuccessfully, then returned to Claude to investigate the cause of the failure. Anthropic said it found no evidence that an operational weapon was successfully fielded.
A cell that Anthropic designated GTG-87001 reportedly used Claude Code across three weapons-development efforts, including guided-rocket, ballistic-missile, and hypersonic-glide missile concepts. The users reportedly split tasks across sessions and used specialized Claude instances for engineering, research, code review, simulations, firmware, and guidance software.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
Follow how adversaries are adapting to this technology, and where it touches your stack today.
4 references tracked. Mallory keeps watching after this page renders.
schneier.com
Open sourcetomshardware.com
Open sourcesecurityweek.com
Open sourcemalware.news
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.