Actors are conducting mass vulnerability scans by impersonating AI crawler bots such as ClaudeBot, exploiting their trusted user-agent strings to bypass security measures. This technique highlights a growing trend of threat actors spoofing legitimate AI bot identities to gain unauthorized access to web properties.
Background
AI crawlers like ClaudeBot, Googlebot, and other assistant bots have become common on the web, often allowed through firewalls due to their reputation. Threat actors are increasingly leveraging this trust by impersonating these well-known user-agent strings.
- Source
- Hacker News (RSS)
- Published
- Aug 12, 2026 at 10:02 PM
- Score
- 6.0 / 10