GTG-20006 / agent-assisted espionage
A blocked toolkit could be rebuilt and redeployed.
Anthropic’s September report describes operators using agent workflows across intrusion campaigns. In the GTG-20006 case, an AI-assisted workflow rebuilt and redeployed tools after security products detected them.
Anthropic attributed the activity to human-led espionage. Its report describes several campaigns, not a single rogue agent; humans still set targets and reviewed stolen data.
Pattalium’s proposed response
Stolen access and persistence
ZXB-Corvin + BXX-Marcian
Restrict the compromised service identity and affected workers. Coordinate with owners before a shared dependency is shut down. Remove persistence, fix the entry point, and replace exposed credentials. Rebuild affected workers from a known source.
What needs to be in place
Test the old credential against every relevant service. Check for surviving sessions, scheduled jobs, and unauthorized alternate accounts.
Event timing: December 2025–August 2026 reporting window.
Try this case in the exercise