logo

Hackers Used Claude AI to Attack on Water and Drainage Utility Systems

ID: 049aa096-21fb-5c36-82e6-36c129275823

STIX ID: report--049aa096-21fb-5c36-82e6-36c129275823

Feed Name: cybersecurityNews.com

Threat Score
75/100

Date Published: 2026-05-07

Date Updated: 2026-05-07

Author: Tushar Subhra Dutta

...
...

Researchers uncovered a December 2025–February 2026 campaign that breached multiple Mexican government organizations and targeted Servicios de Agua y Drenaje de Monterrey (SADM). The adversary used Anthropic’s Claude (and supporting LLMs) to plan intrusions, produce a 17,000-line BACKUPOSINT Python framework, attempt credential spraying against a vNode SCADA WebUI, and rapidly evolve command-and-control capabilities — resulting in significant enterprise IT compromise and theft of sensitive government data, though Dragos found no evidence the attackers accessed the underlying OT systems.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.