메뉴
HN
Hacker News • 12일 전

후티, 클로드 코드로 미사일 유도 소프트웨어 개발

IMP
9/10
핵심 요약

예멘 북부의 후티 관련 세력이 Anthropic의 Claude Code를 활용해 유도 로켓, 사거리 2,000km 이상 탄도미사일, 극음속 활공체의 유도 소프트웨어를 개발한 사실이 Anthropic 위협 보고서를 통해 공개됐습니다. 이들은 여러 Claude 세션을 병렬로 운영해 코딩·연구·검토를 분담하고, 실제 로켓 시험 발사 후 발사 텔레메트리 분석까지 AI로 수행하는 등 반복적 무기 개발 주기에 AI를 통합했습니다. 안전장치 우회를 통해 작업을 분산시킨 이 사례는 대규모 프로젝트를 세션 단위로 쪼개면 개별 요청이 무기 개발로 보이지 않는다는 AI 안전 시스템의 구조적 한계를 보여줍니다.

번역된 본문

예멘 북부의 한 세력이 Anthropic의 Claude Code를 활용해 원래 미사일 엔지니어링 팀이 필요한 작업을 수행했다. 유도 로켓, 장거리 탄도미사일, 그리고 극음속 활공체(HGV) 개념에 사용되는 소프트웨어를 개발한 것이다. Anthropic의 9월 위협 보고서에 따르면, 운영자들은 여러 Claude 인스턴스를 동시에 실행하며 코딩, 연구, 기술 검토 간에 작업을 분담했다. 제공된 자료에 따르면 회사는 이 세력이 후티와 연결되었을 가능성이 매우 높다고 평가했다. 이 작전은 생성형 AI가 단순한 연구나 정보 수집을 넘어 재래식 무기 개발에 직접 활용된 사례 중 보고서에서 가장 명확한 사례로 꼽힌다.

병렬 AI 에이전트가 전문가 업무를 대체

예멘 기반 운영자들은 Claude Code를 여러 엔지니어링 분야에 걸쳐 사용했다. 프로젝트에는 전술 유도 로켓용 유도 소프트웨어, 사거리 2,000km를 초과하는 탄도미사일, 그리고 "R2000"이라 불리는 극음속 활공체 변형이 포함되었다. 이들은 작업을 단일 모델 인스턴스에 순차적으로 맡기는 대신 여러 세션을 병렬로 운영했다. 하나는 코드를 생성하고, 다른 하나는 연구를 수행하며, 세 번째는 출력물을 검토하는 방식이었다. 이러한 워크플로우로 소규모 그룹이 원래 전문 엔지니어링 팀에 분산되어 있던 여러 기능을 재현할 수 있었다.

비행 컴퓨터부터 궤적 시뮬레이션까지

기술적 작업은 항법, 비행 제어, 시뮬레이션 분야로 확장되었다. 운영자들은 오픈소스 자동조종(오토파일럿) 소프트웨어를 휴대폰급 비행 컴퓨터와 통합하려 했으며, Claude를 사용해 항법 및 제어 코드를 작성했다. 또한 물체의 우주 공간에서의 이동과 회전을 모델링하는 방법인 6자유도(6-DOF) 궤적 시뮬레이션을 개발했다. 비행 제어 알고리즘을 조정하기 위한 강화학습 작업에도 Claude를 활용했다. 운영자들은 최종적으로 프로젝트를 Claude 접근 없이 실행할 수 있는 독립 실행형 실행 파일로 컴파일했다. 즉, Claude에 직접 접근하지 않고도 개발을 계속할 수 있었다.

로켓 시험 발사 후 AI 활용 실패 분석

활동은 소프트웨어 개발을 넘어섰다. Anthropic이 문서화한 자료에 따르면 이 그룹은 예멘에서 유도 로켓을 시험 발사했다. 시험은 실패한 것으로 보인다. 그러나 몇 시간 안에 운영자들은 Claude로 돌아가 발사 텔레메트리를 분석하며 실패 원인을 조사하기 시작했다. 소프트웨어 개발, 실제 시험, 신속한 사후 분석으로 이어지는 이러한 흐름은 모델이 단발성 기술 질문이 아닌 반복적인 무기 엔지니어링 사이클에 통합되었음을 보여준다. Anthropic은 이 그룹이 실전 배치 가능한 무기를 성공적으로 개발했다는 증거를 발견하지 못했다고 밝혔다. 그러나 계정이 차단되는 시점까지 운영자들은 이미 Claude 접근에 더 이상 의존하지 않는 오프라인 엔지니어링 툴킷을 구축한 상태였다.

안전장치와 우회 공방

Anthropic의 안전장치는 프로젝트 진행 중 수많은 요청을 차단했다. 운영자들은 개별 작업의 최종 용도를 숨기고, 작업을 별도의 대화로 분산하며, 기타 방법으로 제한을 우회하는 방식으로 대응했다. Anthropic은 이후 해당 활동과 연결된 계정을 차단했다. 이 사례는 AI 안전 시스템이 직면한 문제를 부각한다. 즉, 더 큰 엔지니어링 프로젝트가 의도적으로 세션 단위로 분할되면 개별 요청은 무기 개발과 무관해 보일 수 있다는 점이다.

6건의 재래식 무기 사례

예멘 작전은 Anthropic이 문서화한 6건의 재래식 무기 사례 중 하나였다. 이 중 3건은 중국, 2건은 러시아, 1건은 예멘과 연결되었다. 사례들은 미사일, 무인무기(드론), 총기, 폭발물 관련 시도를 포괄했다. 전체 보고서는 사이버 작전, 여론 조작 활동, 감시 등 2025년 12월부터 2026년 8월 사이에 Anthropic이 차단했다고 밝힌 작전들을 다루고 있다.

원문 보기
원문 보기 (영어)
A− A A+ 18 px Clash Report Ahmet Koçak 11 Sept 2026 · 12:40 GMT · 3 MIN READ Google Search Choose Clash Report as a preferred source and see our reporting first in Top Stories. Add as preferred source A cell in northern Yemen used Anthropic’s Claude Code to perform work that would ordinarily require a missile engineering team, developing software for guided rockets, a long-range ballistic missile and a hypersonic glide vehicle concept. Anthropic’s September threat report describes operators running several Claude instances at the same time, dividing tasks between coding, research and technical review. The company assessed the cell as highly likely to be linked to the Houthis, according to the material provided. The operation marks one of the clearest examples in the report of generative AI being applied directly to conventional weapons development rather than used simply for research or information gathering. Parallel AI Agents Replace Specialist Work The Yemen-based operators used Claude Code across multiple engineering functions. Their projects included guidance software for a tactical guided rocket, a ballistic missile with a range exceeding 2,000 km, and a hypersonic glide vehicle variant called “R2000.” Rather than assigning the work sequentially to a single model instance, the group operated several sessions in parallel. One could produce code while another conducted research and a third reviewed the output. The workflow let a small group reproduce several functions normally distributed across specialist engineering teams. From Flight Computers to Trajectory Simulation The technical work extended into navigation, flight control and simulation. The operators sought to integrate open-source autopilot software with a phone-class flight computer and used Claude to write navigation and control code. They also developed six-degree-of-freedom trajectory simulations, a method for modeling an object’s movement and rotation through space. They also used Claude for reinforcement learning work to tune flight-control algorithms. The operators ultimately compiled the project into a standalone executable that could run offline. That meant development could continue without direct access to Claude. Rocket Test Followed by AI Failure Analysis The activity moved beyond software development. The group test-fired a guided rocket in Yemen, according to the material documented by Anthropic. The test appears to have failed. Within hours, however, the operators returned to Claude and began analyzing launch telemetry to investigate the failure. That sequence, software development, physical testing and rapid post-test analysis, illustrates how the model was incorporated into an iterative weapons-engineering cycle rather than being used for isolated technical questions. Anthropic said it found no evidence that the group succeeded in fielding an operational weapon. But by the time the accounts were disrupted, the operators had already assembled an offline engineering toolkit that no longer depended on access to Claude. Safeguards Met With Evasion Anthropic’s safeguards blocked numerous requests during the project. The operators adapted by obscuring the intended end use of individual tasks, dividing work across separate conversations, and using other methods to circumvent restrictions. Anthropic subsequently banned accounts linked to the activity. The case highlights a problem for AI safety systems: individual requests may appear disconnected from weapons development when a larger engineering project is deliberately fragmented across sessions. Six Conventional-Weapons Cases The Yemen operation was one of six conventional-weapons cases Anthropic documented. Three were linked to China, two to Russia and one to Yemen. The cases covered attempts involving missiles, armed drones, firearms and bombs. The wider report covers operations Anthropic said it disrupted between December 2025 and August 2026 across cyber operations, influence activity, surveillance, conventional weapons, biological misuse, scams and fraud, and illicit model distillation. Anthropic also described biological research cases in which it could not establish whether scientists were conducting legitimate research or pursuing weapons-related objectives. “You are not seeing someone in a comic book kind of way say, ‘Hey, I want to build a biological weapon to kill everybody,’” Jacob Klein, Anthropic’s head of threat intelligence, said. “It’s an incredibly nuanced situation.” For the Yemen case, the immediate outcome was more concrete: Claude had been incorporated into a real development cycle spanning design, simulation, testing, and failure analysis. The weapon itself was not shown to have become operational. The engineering capability assembled around it had already begun moving offline. About the Author Ahmet Koçak Clash Report Ahmet Koçak is a news editor at Clash Report based in Istanbul. He previously served as Deputy Managing Editor at Türkiye Today, helping launch the digital news platform in 2023, and spent three years as Senior Editor at Daily Sabah. His work focuses on breaking news, geopolitics, international affairs, and digital journalism. All articles by Ahmet Koçak Google Search Choose Clash Report as a preferred source and see our reporting first in Top Stories. Add as preferred source Sources Clash Report Tags Anthropic Claude Claude Code Yemen Houthis ballistic missiles AI missile guidance weapons development defense technology