The report
Anthropic's September threat report makes stolen AI access a first-class security asset.
The report describes fraudulent resellers harvesting model credentials, financially motivated operators switching attack workloads onto victim API keys, a hacktivist campaign running on stolen access and GTG-50020 taking production AI-provider keys after compromising an evaluation sandbox.
Anthropic summarizes the attacker value of those credentials as resale value, compute paid by the victim and attribution cover.
This changes how the existing DiggingBeagle cyber-operation cases should be read. AI credentials are not merely configuration secrets for a model API. In the reported campaigns they become transferable infrastructure for other offensive work.