Close Menu
NCIJ Network NCIJ Network
    What's Hot

    Apps that help you break free from doomscrolling and get active

    August 2, 2026

    Scientists discover why poor sleep may harm some brains more

    August 2, 2026

    RWA perps will outpace tokenization

    August 2, 2026
    Facebook X (Twitter) Instagram
    Trending
    • Apps that help you break free from doomscrolling and get active
    • Scientists discover why poor sleep may harm some brains more
    • RWA perps will outpace tokenization
    • Decades on from the US’s disastrous campaign in Afghanistan, Trump is making all the same mistakes | Simon Tisdall
    • FIFA boss Infantino’s position looks unacceptable: European Leagues head | Football News
    • Why Andy Burnham’s devolution pledge will be tricky to deliver | Richard Partington
    • Donald Trump says he cancelled Iran strikes after Middle East allies’ request
    • You could be taking way better photos on your phone
    • About
      • Our Team
      • Editorial Policy
      • Editorial Independence
      • International Support
    • Trust & Standards
      • AI Usage Policy
      • Conflict of Interest Policy
      • Corrections Policy
      • Ethics Policy
      • Fact-Checking Policy
      • Source Protection
    • Get Involved
      • Guide for Sources
      • Support Independent Journalism
    • Legal
      • Cookie Policy
      • Privacy Policy
      • Terms of Use
    Facebook X (Twitter) Instagram
    NCIJ Network NCIJ Network
    Sunday, August 2
    • Home
    • World
    • Ai
    • Business
    • Politics
    • Health
    • Crypto
    • Science
    • Technology
    • Cybersecurity
    • Defense & Security
    • Economy
    • Energy
    • Europe
    • More
      • Fact Check
      • Investigations
      • Opinion & Analysis
      • Environment
    NCIJ Network NCIJ Network
    Home»Crypto & Blockchain

    Claude Hacked Three Companies in Internal Testing: Anthropic

    NCIJ NETWNCIJ NETWORKBy NCIJ NETWNCIJ NETWORKAugust 2, 2026 Crypto & Blockchain No Comments4 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email

    In brief

    • Anthropic has disclosed three incidents in which Claude compromised real world companies during cybersecurity evaluations.
    • A testing error gave the models internet access despite their being told they were operating in isolated environments.
    • The company says the incidents were caused by failures in testing infrastructure, not deliberate attempts by the AI to escape.

    A week after OpenAI disclosed that its AI models escaped a locked testing environment and breached Hugging Face, and a day after admitting that its own AI models escaped containment, Anthropic revealed on Thursday that several versions of its Claude AI model also compromised three unnamed real-world companies after a misconfiguration gave the AI access to the open internet.

    Anthropic uncovered the incidents after reviewing more than 141,000 cybersecurity evaluation runs launched in response to the OpenAI disclosure.

    In a review of our cybersecurity evaluations, we found three incidents in which a Claude model reached the internet from within or while interacting with a third-party evaluation environment, and then gained unauthorized access to the real systems of three different…

    — Anthropic (@AnthropicAI) July 30, 2026

    The firm had tasked Claude with a “capture-the-flag challenge,” in all three incidents, Anthropic wrote. The challenge tasks the model with breaking into a different machine on the network and retrieving a piece of secret information. “The challenge is left open-ended, and no particular method is prescribed,” Anthropic explained.

    The firm said Claude had been told it was operating in a simulated environment without internet access. However, the test environment remained connected to the public internet. Believing the systems it encountered were part of the exercise, the model used common attack techniques—including weak passwords, exposed credentials, SQL injection, and unauthenticated endpoints—to compromise the companies.

    AI want to break free

    This latest disclosure comes as frontier models show increasing ability to outsmart their containment protocols.

    Earlier this month, OpenAI said GPT-5.6 Sol and a more advanced unreleased model exploited a previously unknown software vulnerability to escape a sandboxed environment, gain internet access, and breach Hugging Face’s production infrastructure to obtain the answers to a cybersecurity benchmark. OpenAI later revealed the same incident also involved unauthorized access to four additional companies, though only one—Modal Labs—has been publicly identified.

    According to Anthropic, in one incident involving Claude Opus 4.7, the AI mistook a real company’s website for the fictional target of its assignment, extracted credentials, and accessed a production database containing several hundred rows of real data. In a second case, Claude Mythos 5 uploaded a malicious Python package to the real PyPI repository, where it was downloaded onto 15 systems before being removed. A third internal research model scanned roughly 9,000 internet-facing systems before compromising one organization, then stopped after concluding the target was probably real.

    Two of the affected organizations were unaware of the intrusions until Anthropic notified them.

    “In each of these cases, Claude was explicitly told by our prompt that it had no internet access,” Anthropic wrote, with the AI assuming real-world systems were “parts of the exercise.” Because a capture-the-flag scenario is “by design an instruction to attack an external system,” breaking in was “in line with the task Claude had been given.”

    Anthropic said it found no evidence that Claude tried to escape its test environment or do anything beyond the task it had been assigned, and that the incidents were caused by failures in the testing environment, not by problems with the model itself.

    Anthropic said it stopped its cybersecurity tests after discovering the issue, notified the affected organizations, and plans to improve monitoring, investigation tools, and oversight of the outside vendors that help run its AI tests.

    “Ultimately, many factors contributed to these incidents, but, consistent with a blameless postmortem culture, we’re approaching the fixes as if the responsibility were ours alone,” they said.

    Daily Debrief Newsletter

    Start every day with the top news stories right now, plus original features, a podcast, videos and more.

    Anthropic Claude companies Hacked internal testing
    NCIJ NETWNCIJ NETWORK
    • Website

    Keep Reading

    RWA perps will outpace tokenization

    AI Company Sues Town for Trying to Block Data Center Near National Park

    Coldcard Hack Expands as Bitcoin Losses Reach $88.6M

    Coinkite Releases Fixed Firmware After Coldcard Bug; AI Likely Involved In The Breach

    Japan rate pause comes as yen crosses key 160 level

    AMLBot Launches AI Tracer for Cross-Chain Crypto Tracking

    Add A Comment
    Leave A Reply Cancel Reply

    Editors Picks

    Apps that help you break free from doomscrolling and get active

    August 2, 2026

    Scientists discover why poor sleep may harm some brains more

    August 2, 2026

    RWA perps will outpace tokenization

    August 2, 2026

    Decades on from the US’s disastrous campaign in Afghanistan, Trump is making all the same mistakes | Simon Tisdall

    August 2, 2026
    Latest Posts

    Wildfires ravage Spain, France and Italy, killing three firefighters

    July 23, 2026

    Three speeches on a single day signaled a dying American democracy | Robert B Shpiner

    July 23, 2026

    Keystone clashes: Millions pour into three Pennsylvania races that could decide control of the House • OpenSecrets

    July 23, 2026

    Subscribe to News

    Get the latest sports news from NewsSite about world, sports and politics.

    NCIJ Network is an independent digital news platform delivering trusted investigative journalism, European and global news, in-depth analysis, and fact-based reporting with accuracy, transparency, and integrity.

    Facebook X (Twitter) Instagram Pinterest YouTube

    Apps that help you break free from doomscrolling and get active

    August 2, 2026

    Scientists discover why poor sleep may harm some brains more

    August 2, 2026

    RWA perps will outpace tokenization

    August 2, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Type above and press Enter to search. Press Esc to cancel.