Anthropic’s September 10, 2026 threat report describes a Russia-based freelance team that used Claude Code to develop software for an autonomous first-person-view (FPV) kamikaze-drone swarm. The project, identified as GTG-27005 and called DronDoc or Serafim, included swarm coordination, computer vision, terminal guidance, target selection and detonation logic. The described work was tested in simulation and on development hardware rather than presented as a field operation.

What Claude Code reportedly helped build

Claude Code is Anthropic’s coding tool. In this case, Anthropic says it was used by likely Russia-based freelance developers to write and test a software stack intended to coordinate multiple FPV drones.

The reported architecture included shared swarm memory and fault-tolerant coordination, meaning the drones were designed to share information and continue operating when part of the system failed. It also included computer vision for target recognition and enemy-versus-friendly classification, along with terminal guidance for the final phase of flight.

The onboard decision system was reportedly designed to choose whether an individual drone would attack, observe or return to base. Reported target classes included “person”, and the software was designed to issue a detonation command without a human in the loop.

That combination is what makes the case significant: Claude Code was reportedly used across a broader weapons-development software stack, not merely to generate an isolated code snippet. The system’s intended behavior covered coordination, perception and action selection.

The project reached simulation and development hardware

The developers reportedly trained the computer-vision system on scraped Ukrainian combat footage and used Ukrainian locations in simulated missions. The development setup included software-in-the-loop simulation, rented GPU computing and development boards.

Anthropic found evidence that code had been loaded onto real development hardware. The reported testing also included hardware-in-the-loop work, in which software interacts with simulated conditions while running against physical components. That is a meaningful step beyond a purely theoretical design, but it remains different from operating a deployed swarm in combat.

No exact airframe model, dimensions, payload, range or performance figures were provided for DronDoc or Serafim. The project is therefore best understood as an early-stage autonomous-weapons software effort, with the available technical description focused on its control logic rather than a finished drone product.

A freelance group, not a confirmed state program

Anthropic assessed the developers as a freelance group rather than a confirmed Russian state entity. The project’s reported connection to Russia describes the team’s base, not a verified government command structure.

The developers reportedly used commercial virtual private servers to get around Anthropic’s geographic access restrictions in Russia. Anthropic said it disrupted the activity after identifying it and reported that the broader investigation covered misuse across seven harm areas between December 2025 and August 2026.

The project’s internal identifier, GTG-27005, also matters because Anthropic’s report discussed a separate Russia-linked cyberespionage case under the identifier GTG-20006. They are different cases and should not be treated as one operation.

What Anthropic did after detecting the activity

Anthropic said it disrupted the associated activity, strengthened its safeguards and shared intelligence with authorities and industry partners where appropriate. The company’s report also described Claude Haiku, Sonnet and Opus as involved in the broader set of misuse cases; the drone project itself was described in connection with Claude Code rather than a separately identified model.

The practical shift is clear: software assistance can shorten the path from an idea to a working control system, even when the final hardware, deployment and mission remain separate engineering problems. In this case, Anthropic’s account places Claude Code inside the development process for swarm coordination, computer vision and autonomous attack logic, with the activity ending in account disruption and further safeguards.