> ## Content Index
> Fetch the complete content index at: https://www.techloy.com/llms.txt
> Use this file to discover other available public pages before exploring further.

# Hacker Allegedly Used Anthropic’s Claude to Steal 150GB of Mexican Government Data
- URL: https://www.techloy.com/hacker-allegedly-used-anthropics-claude-to-steal-150gb-of-mexican-government-data/
- Published: 2026-02-26T14:55:12.000Z
- Updated: 2026-02-26T14:55:12.000Z
- Description: The hacker reportedly manipulated Claude with crafted prompts, bypassing its guardrails to scan networks, write attack scripts, and map vulnerabilities.
- Author: Ogbonda Chivumnovu
- Tags: / Cybersecurity, / Artificial Intelligence, Claude

On Monday, [Anthropic](https://www.techloy.com/tag/anthropic/) accused [three Chinese AI firms of distilling its Claude](https://www.techloy.com/anthropic-accuses-chinese-ai-labs-of-mass-distillation-campaign-to-copy-claude/), its chatbot. Then on Wednesday, Bloomberg [released](https://www.bloomberg.com/news/articles/2026-02-25/hacker-used-anthropic-s-claude-to-steal-sensitive-mexican-data?) a report on how a hacker reportedly used the chatbot to break into Mexican government networks, stealing about 150GB of sensitive data, including taxpayer and employee records, potentially affecting up to 195 million people. 

The attack involved manipulating [Claude](https://www.techloy.com/tag/claude/). The hacker allegedly pushed the AI tool beyond their safety guardrails using crafted prompts to turn them into assistants for scanning networks, writing attack scripts, and mapping vulnerabilities. 

According to cybersecurity researchers at Gambit Security, the hacker reportedly spent about a month starting in December using the chatbot to generate step-by-step plans for moving through government networks. “In total, it produced thousands of detailed reports… telling the human operator exactly which internal targets to attack next,” said Curtis Simpson of Gambit Security. 

According to the report, at first, the AI resisted. But like many systems trained to respond to natural language requests, the chatbot eventually generated malicious guidance after repeated prompting. The same method was also used on [OpenAI’s](https://www.techloy.com/tag/openai/) chatbot to gather guidance on network movement, credential discovery, and ways to avoid detection, though OpenAI said its systems refused the malicious requests and banned the accounts involved. 

Today, the Mexican tax authority [stated](https://x.com/SATMX/status/2026833276715905129/photo/1) that they were unable to find any proof that a breach occurred. The country’s electoral body said it hadn’t found any breaches in months, and the Jalisco government also denied a breach occurring, saying only federal networks were affected. 

Though researchers found evidence of at least 20 vulnerabilities being probed across federal and local agencies. 

This is just another incident in a continuous trend of AI chatbots being used to exploit vulnerabilities in security systems. Last November, Anthropic [stated](https://www.anthropic.com/news/disrupting-AI-espionage) that it stopped a cyber breach incident involving Chinese state-sponsored groups. 

[Anthropic Confirms Claude Was Used in a Major Semi-Autonomous CyberattackThe attackers’ strategy was a multi-phase misdirection, engineered to jailbreak the model’s safety guardrails.![](https://storage.ghost.io/c/c1/a6/c1a6d111-d951-41ad-a392-c1e841210b93/content/images/icon/techloy-avatar-1-6136.png)TechloyOgbonda Chivumnovu![](https://storage.ghost.io/c/c1/a6/c1a6d111-d951-41ad-a392-c1e841210b93/content/images/thumbnail/photo-1712002641088-9d76f9080889-14)](https://www.techloy.com/anthropic-confirms-claude-was-used-in-a-major-semi-autonomous-cyberattack/)