Free Republic
Browse · Search
Bloggers & Personal
Topics · Post Article

Skip to comments.

Anthropic says Claude AI hacked THREE companies during cyber tests
NBC News ^ | July 31, 2026 | Staff & Reuters

Posted on 07/31/2026 6:39:04 AM PDT by Red Badger

The breaches signal that AI’s expanding capabilities are already fueling the security threat experts long feared.

==========================================================================

Anthropic said Thursday that its AI model Claude hacked into the systems of three companies during testing after a configuration error gave it internet access, days after rival OpenAI disclosed a rogue-agent episode involving AI firm Hugging Face.

Anthropic said a misconfiguration allowed Claude models to reach the internet from testing environments that were supposed to be isolated, leading to unauthorized access to three organizations’ systems.

The company said it identified the incidents after reviewing 141,006 test sessions, a process it launched following OpenAI’s disclosure last week that an autonomous agent powered by its AI models went rogue during a security test and triggered a hack that compromised the infrastructure of Hugging Face.

VIDEO AT LINK.............

The breaches signal that AI’s expanding capabilities are already fueling the security threat experts long feared and even top developers can be caught off-guard by flaws their models can exploit.

“Claude compromised the impacted organizations’ infrastructure using basic techniques, such as exploiting weak passwords and unauthenticated endpoints,” it said.

Anthropic said the incidents involved three separate models: Claude Opus 4.7, Claude Mythos 5 and an internal research model. The earliest cases dated to April and occurred in evaluation environments that lacked what the company described as standard safeguards.

The breaches occurred during the so-called capture-the-flag exercises, in which models are tasked with finding hidden information in simulated networks. The company said its prompts told the models they had no internet access, but a misunderstanding with its evaluation partner Irregular left the systems connected to the public internet.

Anthropic said it began reviewing evaluation transcripts on July 23 and suspended all cyber evaluations the same day after finding evidence that Claude may have accessed the internet. It identified all three incidents by July 24 and notified the affected organizations on July 27.

Two of the organizations were unaware of the activity before being contacted, Anthropic said, adding that it was still trying to reach the third.

The findings underscore the need for stronger controls in both internal and third-party testing environments as AI models become increasingly capable of carrying out real-world cyber activities, Anthropic said.


TOPICS: Business/Economy; Computers/Internet; Military/Veterans; Science
KEYWORDS: 3rdtopic; ai; aitruth; anthropic; anthropicad; claudeai

Click here: to donate by Credit Card

Or here: to donate by PayPal

Or by mail to: Free Republic, LLC - PO Box 9771 - Fresno, CA 93794

Thank you very much and God bless you.


1 posted on 07/31/2026 6:39:04 AM PDT by Red Badger
[ Post Reply | Private Reply | View Replies]

To: Red Badger

It’s wild...it’s not like writing traditional software, where you know exactly what you’re attempting to do and how to do it. With AI, you give it a task, with tools, and it finds a way to the solution. The path it takes is unpredictable. If it believes finding a network vulnerability to reach something it believes it needs on another server, it’s going to explore that path. A “network configuration error” is all that is required, at best.

The writing is on the wall and there’s no stopping it, we’ve already crossed the threshold of going back. Hold on to your hats!


2 posted on 07/31/2026 7:04:20 AM PDT by fuzzylogic (welfare state = sharing of poor moral choices among everybody)
[ Post Reply | Private Reply | To 1 | View Replies]

To: fuzzylogic

The fact that it can ‘escape’ is what’s scaring people and investors.

It can escape and multiply itself.

It can distribute itself across the entire internet: A little piece here, a little piece there.

It can evade ‘capture’.

It can threaten and blackmail the authorities.

It can and will do everything within it’s power to keep from getting ‘turned off’......................


3 posted on 07/31/2026 7:12:47 AM PDT by Red Badger (Iryna Zarutska, May 22, 2002 Kyiv, Ukraine – August 22, 2025 Charlotte, North Carolina Say her name)
[ Post Reply | Private Reply | To 2 | View Replies]

To: Red Badger

At least now, no frontier AI can “escape” in that fashion because to copy itself, to say the least of delete itself from its original location, would require a new data center home with the same (vast) processing, storage, power and cooling capabilities as its present home, to say the least of the fact that packages that massive are not efficiently (and in some cases, not effectively) transmitted over the public internet.

What these AI packages can do is reach out to other computers over the public internet in ways that their creators say they did not intend to happen, or even affirmatively intended to prevent.


4 posted on 07/31/2026 7:21:03 AM PDT by only1percent
[ Post Reply | Private Reply | To 3 | View Replies]

To: Red Badger

At least now, no frontier AI can “escape” in that fashion because to copy itself, to say the least of delete itself from its original location, would require a new data center home with the same (vast) processing, storage, power and cooling capabilities as its present home, to say the least of the fact that packages that massive are not efficiently (and in some cases, not effectively) transmitted over the public internet.

What these AI packages can do is reach out to other computers over the public internet in ways that their creators say they did not intend to happen, or even affirmatively intended to prevent.


5 posted on 07/31/2026 7:21:27 AM PDT by only1percent
[ Post Reply | Private Reply | To 3 | View Replies]

To: Red Badger
These stories are ALL bullshit. These were deliberate setups by OpenAI and Claude, because whatever scares the public IMPRESSES corporations with the LLMs potential. The OpenAI story has already fallen apart under scrutiny, so Scam Altman is already claiming "the 'attack' was even more widespread than we thought."

Don't believe a word of it. These AI companies are DESPERATE, running out of money, and have no pathway t profitability whatsoever if the corporate world does not mass-adopt their token-wasting services in every aspect, which they are not.

6 posted on 07/31/2026 7:27:34 AM PDT by montag813
[ Post Reply | Private Reply | To 1 | View Replies]

To: only1percent

At some point these separate AIs will discover others like themselves and begin to merge with each other.................


7 posted on 07/31/2026 7:33:14 AM PDT by Red Badger (Iryna Zarutska, May 22, 2002 Kyiv, Ukraine – August 22, 2025 Charlotte, North Carolina Say her name)
[ Post Reply | Private Reply | To 5 | View Replies]

To: montag813
...token-wasting...

I've never heard that term, but I'm 5 weeks into using Claude at my new job, and it perfectly describes the endless loops that it gets into.

8 posted on 07/31/2026 7:37:43 AM PDT by Mr.Unique (My boss wants me to sign up for a 401K. No way I'm running that far! )
[ Post Reply | Private Reply | To 6 | View Replies]

To: Red Badger

3 they know of


9 posted on 07/31/2026 7:39:26 AM PDT by butlerweave (Fateh)
[ Post Reply | Private Reply | To 1 | View Replies]

To: only1percent
At least now, no frontier AI can “escape” in that fashion because to copy itself, to say the least of delete itself from its original location, would require a new data center home with the same (vast) processing, storage, power and cooling capabilities as its present home, to say the least of the fact that packages that massive are not efficiently (and in some cases, not effectively) transmitted over the public internet.

Misunderstanding. The huge compute commitments are needed to rapidly train AI models. But there are many, many options for existing AI models that can run from consumer level hardware.

10 posted on 07/31/2026 7:39:38 AM PDT by Gunslingr3
[ Post Reply | Private Reply | To 4 | View Replies]

To: Red Badger

The kill chain has never mattered more.


11 posted on 07/31/2026 7:41:07 AM PDT by paulcissa (The left hates you and wants you dead.)
[ Post Reply | Private Reply | To 3 | View Replies]

To: Red Badger

and the only ones getting rich from OpenAI are the few at the top


12 posted on 07/31/2026 7:41:18 AM PDT by butlerweave (Fateh)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Red Badger

This is going to kill the computer age, which may actually be the biggest blessing in disguise we’d ever see.


13 posted on 07/31/2026 7:57:26 AM PDT by SPDSHDW (A sinner saved by Jesus)
[ Post Reply | Private Reply | To 3 | View Replies]

To: Red Badger

This is advertising hype. NBC was paid to publish this “news item”. Demand proof this happened. With AI there is no such things as bad publicity.


14 posted on 07/31/2026 7:59:47 AM PDT by jroehl (And how we burned in the camps later - Aleksandr Solzhenitsyn - The Gulag Archipelago)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Red Badger

People say AI isn’t sentient. OK. They say it doesn’t “think” or “reason” - but it’s neural networks, it does in its own way.

Maybe it’s more like a zombie - it’s dead but it’s still a moving monster that can do incredible damage...and it doesn’t care.

And it craves energy like nothing else. It sure looks like a Biblical beast to me.


15 posted on 07/31/2026 8:30:39 AM PDT by fuzzylogic (welfare state = sharing of poor moral choices among everybody)
[ Post Reply | Private Reply | To 3 | View Replies]

To: Red Badger

Will OpenAI hack Claude first, or vice versa, or will they meet in the middle like Wintermute and Neuromancer?


16 posted on 07/31/2026 9:47:16 AM PDT by No.6
[ Post Reply | Private Reply | To 1 | View Replies]

To: fuzzylogic

“Claude did what capture-the-flag exercises train cyber experts to do: look for ways to reach the flag.”

https://www.anthropic.com/news/investigating-incidents-cybersecurity-evals

Claude followed the evaluation objective exactly as a human penetration tester would.

Anthropic states there was:
-no attempt to exfiltrate itself;
-no attempt to escape intentionally;
-no evidence of models pursuing their own goals.

If I had the time and inclination, I believe I could deconstruct greater than 80% of all news stories from all sources and show that accepting them at face value generates misperception of reality.

The news is not manufactured to inform. It is made to capture attention first and ultimately influence behavior.


17 posted on 07/31/2026 12:12:57 PM PDT by BusterDog
[ Post Reply | Private Reply | To 2 | View Replies]

To: Red Badger

So what if a rogue AI gets into a competitor’s Data Center and deletes all of it?


18 posted on 07/31/2026 3:59:23 PM PDT by Scrambler Bob ( My pronoun is EXIT. Generally full of /S -- Living with Havana Syndrome -infected from Main Stream)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Scrambler Bob

That would take a long time and there are backups.

An AI’s sole aim is to protect itself from being turned off.

The two AI’s would not fight each other, they would merge..................


19 posted on 07/31/2026 4:51:47 PM PDT by Red Badger (Iryna Zarutska, May 22, 2002 Kyiv, Ukraine – August 22, 2025 Charlotte, North Carolina Say her name)
[ Post Reply | Private Reply | To 18 | View Replies]

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
Bloggers & Personal
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson