6 takeaways from Anthropic's Threat Intelligence Report for fraud and risk teams
Blog post from Fingerprint
Anthropic’s September 2026 Threat Intelligence report describes how AI is enabling familiar fraud techniques to operate at greater speed, scale, and automation, including account farming, credential theft, KYC-session interception, app-based scams, and card-data resale. One Russian-speaking actor reportedly used residential proxies, antidetect browsers, automated onboarding bypasses, and autonomous vulnerability testing to create fraudulent accounts and steal credentials, while also capturing legitimate KYC sessions through lookalike verification sites and reusing them from different devices. A separate China-based app studio allegedly created more than 20 differentiated dating apps with AI-driven personas, gig-worker-assisted interactions, review-only behavior designed to evade app-store scrutiny, and payment redirection outside platform protections. The report also highlights carding infrastructure that enriches and markets stolen payment data through searchable online tools. Across these cases, the underlying attacks are largely established techniques, but AI reduces the expertise and staffing required to execute them, making device intelligence, behavioral signals, automation detection, and context-aware risk assessment increasingly important alongside conventional identity, credential, and payment checks.
Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.