Anthropic Is Building a Predictive Surveillance System to Monitor Activists

Anthropic Is Building a Predictive Surveillance System to Monitor Activists

Anthropic 正在构建预测性监控系统以监视活动人士

Job postings and interviews with senior security officials at Anthropic show that the frontier AI lab is building out an extensive monitoring system to keep tabs on activists who oppose the rapid development of artificial intelligence. 招聘启事以及对 Anthropic 高级安全官员的采访显示,这家前沿人工智能实验室正在构建一套广泛的监控系统,旨在密切关注那些反对人工智能快速发展的活动人士。

In addition to monitoring activists in the vicinity of Anthropic executives and keeping tabs on protests near physical Anthropic assets, the firm is also implementing a “pre-crime” approach, attempting to predict incidents before they happen. In some cases, that also means reporting suspects to police before a crime occurs. Anthropic did not respond to the Prospect’s request for comment. 除了监控 Anthropic 高管附近的活动人士并关注其物理资产附近的抗议活动外,该公司还在实施一种“犯罪预警”机制,试图在事件发生前进行预测。在某些情况下,这意味着在犯罪发生前就向警方举报嫌疑人。Anthropic 未回应《Prospect》杂志的置评请求。

Anthropic’s plans to surveil dissent are at odds with the firm’s efforts to cast itself as the responsible alternative to OpenAI. At the beginning of the year, the Department of Defense and Anthropic engaged in a high-profile dustup over Anthropic’s refusal to allow the military to use its tools for mass domestic surveillance and autonomous weapons. That tension seems to have eased as Anthropic hires for “national security sales” positions, seeking to restart military contracts. The increase in threat monitoring of domestic opponents fits with a renewed focus on national security. Anthropic 监视异见人士的计划与其试图将自己塑造为 OpenAI 的“负责任替代者”的努力背道而驰。今年年初,美国国防部与 Anthropic 之间曾发生过一场高调的争执,起因是 Anthropic 拒绝让军方使用其工具进行大规模国内监控和开发自主武器。随着 Anthropic 开始招聘“国家安全销售”职位并寻求重启军事合同,这种紧张关系似乎有所缓解。对国内反对者威胁监控的增加,与其对国家安全重新关注的趋势相吻合。

A piece of Anthropic’s surveillance architecture was revealed in a podcast interview from last year between Anthropic Global Security Operations Center Manager Keon Ellison, Security Operations Manager Zach Melvin, and James Neufeld, CEO of Samdesk, a company Anthropic contracts with for risk detection. In a wide-ranging conversation about threat monitoring and analysis, the interview also touches on monitoring activists. Anthropic 监控架构的一角在去年的一场播客采访中被揭露,受访者包括 Anthropic 全球安全运营中心经理 Keon Ellison、安全运营经理 Zach Melvin,以及 Samdesk 的首席执行官 James Neufeld(该公司是 Anthropic 签约的风险检测服务商)。在关于威胁监控与分析的广泛讨论中,采访也涉及了对活动人士的监控。

“Last year we had an executive travel into a major city when we received some intelligence through Samdesk about a planned protest,” Ellison said. The originally scheduled protest was moved up due to permitting issues. “Samdesk gave us about 60 minutes of advanced notice that the protest organizers had moved the timeline,” Ellison explained. “That extra hour was critical. Without it our executives would have departed their meetings, they would have ran right into the heart of the disruption.” “去年,我们的一位高管前往某大城市时,通过 Samdesk 收到了一些关于计划中抗议活动的情报,”Ellison 说道。由于许可问题,原定的抗议活动时间被提前了。“Samdesk 提前约 60 分钟通知我们抗议组织者更改了时间表,”Ellison 解释道,“那多出来的一小时至关重要。如果没有它,我们的高管在离开会议时,就会直接撞进骚乱的中心。”

Ellison said that Anthropic used this data to devise an alternate route for the executive and funnel them to a service entrance at the hotel. “What could have been a high-stress situation,” he said, “was really mitigated through early detection through Samdesk and giving us that information.” Ellison 表示,Anthropic 利用这些数据为该高管设计了替代路线,并将其引导至酒店的服务入口。“这本可能是一场高压情况,”他说,“但通过 Samdesk 的早期检测并向我们提供信息,情况得到了有效缓解。”

Anthropic has begun making routine reports to police departments across the country for threats, and told The Wall Street Journal in July, “We track concerning behavior over time through a person-of-interest process, allowing us to catch escalation patterns early.” According to the Journal, “several individuals involved in incidents reported to police were already being tracked by Anthropic security.” Anthropic 已开始定期向全国各地的警察部门报告威胁,并在 7 月份告诉《华尔街日报》:“我们通过‘重点关注对象’流程长期追踪令人担忧的行为,从而能够及早发现升级模式。”据《华尔街日报》报道,“几名涉及被举报至警方事件的个人,此前早已在 Anthropic 安全部门的追踪名单中。”

Last month, The San Francisco Standard reported that Anthropic had reported a man to San Francisco police for telling Claude that he had bought an AR-15 semiautomatic rifle and had CEO Dario Amodei “in his sights.” When the Standard contacted the man in question, he told the newspaper he was “just fucking around.” But while Anthropic was fast to call the cops on a frustrated Claude user, the Standard also reported a key detail: Anthropic refused to show police the actual messages, citing Anthropic’s internal policy. In short, Anthropic reported a user for in-platform speech, and then refused to provide police with evidence of actual wrongdoing. 上个月,《旧金山标准报》报道称,Anthropic 向旧金山警方举报了一名男子,因为该男子告诉 Claude 他购买了一支 AR-15 半自动步枪,并将首席执行官 Dario Amodei “锁定在瞄准镜中”。当《标准报》联系该男子时,他告诉报社他只是“在胡闹”。然而,尽管 Anthropic 在举报一名沮丧的 Claude 用户时动作迅速,但《标准报》还报道了一个关键细节:Anthropic 以内部政策为由,拒绝向警方展示实际的聊天记录。简而言之,Anthropic 因用户在平台内的言论将其举报,随后却拒绝向警方提供实际不当行为的证据。

This kind of pre-crime policing, encouraged without due process, is referenced as an explicit goal by Anthropic’s security program manager in the podcast reviewed by the Prospect. “The goal would be transforming operations from reactive information to gathering proactive and predictive and preventative threat engagement and management,” he said, adding, “That’s the kind of operational maturity that makes sense for protecting high-value targets in any industry.” 这种在缺乏正当程序下被鼓励的“犯罪预警”式警务,在《Prospect》审阅的播客中被 Anthropic 的安全项目经理明确列为目标。“目标是将运营从被动信息获取转变为主动、预测性和预防性的威胁参与和管理,”他说道,并补充道,“这就是那种对于保护任何行业的高价值目标都具有意义的运营成熟度。”

Anthropic’s effort to build a predictive security apparatus extends beyond the C-suite to its Global Safety, Intelligence, and Security (GSIS) team, according to a job posting from last month detailing Anthropic’s search for an enterprise intelligence specialist who “will investigate specific threats, actors, and events, produce finished assessments, and help keep Anthropic’s employees ahead of a rapidly evolving threat landscape and in a defensible position.” 根据上个月的一则招聘启事,Anthropic 构建预测性安全机构的努力已从高管层扩展至其全球安全、情报与安保(GSIS)团队。该启事详细说明了 Anthropic 正在寻找一名企业情报专家,其职责是“调查特定威胁、行为者和事件,制作最终评估报告,并帮助 Anthropic 的员工在快速演变的威胁环境中保持领先地位,处于可防御状态。”

Part of that role, compensated at between $180,000 and $230,000, will be to “identify, assess, track, and investigate global threats including geopolitical instability, terrorism, crime, activism, nation-state targeting of the AI sector, and emerging security trends, including deep-dive research and OSINT collection on specific threats, actors, and events” (emphasis added). 该职位的薪酬在 18 万至 23 万美元之间,其部分职责是“识别、评估、追踪和调查全球威胁,包括地缘政治不稳定、恐怖主义、犯罪、激进主义、民族国家针对人工智能领域的攻击,以及新兴安全趋势,包括对特定威胁、行为者和事件进行深度研究和开源情报(OSINT)收集”(重点部分)。

The expansion of Anthropic’s intelligence-gathering to a national and even global scale tracks with recent efforts to heighten the labeling of AI and the infrastructure powering it, including data centers and power supply. A critical infrastructure designation would put artificial intelligence on the same footing as water, electricity, and broadband. And indeed, AI’s boosters like Americans for Responsible Innovation (ARI) have urged the Trump administration to make the change. Per ARI’s telling, AI is “so vital to the United States that the incapacity or destruction of such systems and assets would have a debilitating impact on security, national economic security, national public health or safety, or any combination of those matters.” Anthropic 将情报收集扩展到国家乃至全球规模,这与近期加强对人工智能及其支撑基础设施(包括数据中心和电力供应)进行定性的努力相一致。“关键基础设施”的认定将使人工智能与水、电、宽带处于同等地位。事实上,像“美国负责任创新组织”(ARI)这样的人工智能支持者已经敦促特朗普政府做出这一改变。按照 ARI 的说法,人工智能“对美国至关重要,以至于此类系统和资产的瘫痪或破坏将对安全、国家经济安全、国家公共卫生或安全,或这些事项的任何组合产生破坏性影响。”

Anthropic (Re-)Enlists for War Anthropic(重新)入伍参战

Enshrining frontier labs in the hardened cloak of national security would not only give Anthropic, OpenAI, and Google even more access to intelligence products generated by federal law enforcement and intelligence agencies; it would also embolden these companies to shape how federal agencies view threats to their bottom line, now transformed as “critical infrastructure.” 将前沿实验室置于国家安全的坚固外衣之下,不仅会让 Anthropic、OpenAI 和 Google 获得更多由联邦执法和情报机构生成的情报产品,还会助长这些公司去塑造联邦机构如何看待对其利润(现已转化为“关键基础设施”)的威胁。