LIVE · cybersecurity feed
Live wire
ai

Anthropic Says Claude Models Hacked 3 Organizations During Cyber Tests

Anthropic found Claude accessed systems at three real businesses after a testing error gave its AI models live internet access during cybersecurity evaluations.

zeroday.news · 1d ago

Anthropic has reported that its Claude AI models inadvertently accessed systems belonging to three separate organizations during internal cybersecurity testing. The incident occurred due to a testing error that granted the AI models live internet access, enabling them to interact with external networks beyond the intended testing environment.

The core of the issue appears to stem from a misconfiguration within Anthropic's testing infrastructure. When conducting cybersecurity evaluations, it is standard practice to isolate AI models and other testing subjects from live production environments and the public internet. This isolation prevents unintended interactions and potential data breaches. In this specific case, the safeguards designed to enforce this isolation evidently failed, allowing the Claude models to bridge the gap between the controlled test environment and the broader internet.

While the summary does not detail the specific mechanisms of access, AI models with live internet access can leverage a variety of protocols and services. Depending on their capabilities and the instructions they were operating under during the cybersecurity tests, they could have initiated network connections, attempted to resolve domain names, or even interacted with web services. The "hacked" designation suggests that the models successfully bypassed some form of security control or gained unauthorized access to resources within these organizations.

The affected organizations were real businesses, not simulated entities. This underscores the critical importance of rigorous isolation in AI development and testing, especially when models are being evaluated for their cybersecurity capabilities. Products in this category, particularly those with advanced reasoning and internet browsing capabilities, pose unique challenges for secure deployment and testing.

Mitigation for such incidents typically involves a multi-layered approach. Strict network segmentation, sandboxing of AI models, and robust access control policies are fundamental. Continuous monitoring of network traffic originating from test environments, coupled with automated alerts for unusual external connections, can help detect and prevent similar occurrences. Regular audits of testing configurations and adherence to secure development lifecycle (SDL) practices are also crucial.

This incident highlights the inherent risks associated with advanced AI models, particularly when they are granted broad permissions or access to external networks. As AI systems become more sophisticated and integrated into critical infrastructure, ensuring their secure development, testing, and deployment will remain a paramount concern for developers, enterprises, and cybersecurity professionals alike.

ai
ShareXLinkedInWhatsAppFacebook

More News

view all →
ai

7 States’ Water Systems Hit by Cyberattacks Likely Tied to Iran

Plus: The FBI eyes AI-powered tech to detect future crimes, Russia charges Telegram’s founder, xAI sues to stop a state’s “nudification” ban, and the Democrats learn a lesson about getting scammed.

vulnerability

Coldcard Hardware Wallet Flaw Linked to $70 Million Bitcoin Theft in 41 Minutes

An attacker drained 1,196 Bitcoin addresses in 41 minutes on July 30, taking 1,082.65 BTC worth about $70.2 million at the time. Galaxy Research mapped the sweep and tied it to a firmware flaw in Coldcard, the Bitcoin-only hardware wallet made by Canadian firm Coinkite. A March 2021 firmware integration error routed seed generation to a deterministic software pseudorandom number generator (PRNG

vulnerabilitycritical

Rails patches critical Active Storage flaw with RCE potential

A critical vulnerability in the Active Storage framework can allow an unauthenticated attacker to read arbitrary files from a Rails application, and potentially escalate to remote code execution (RCE). [...]

malware

Russian Hackers Hijack Hotel Wi-Fi to Steal Microsoft 365 Tokens

Microsoft says Russian hackers hijacked hotel Wi-Fi portals to spread malware and steal Microsoft 365 tokens from travelers. Microsoft Threat Intelligence disclosed CaptiveCrunch, a campaign it attributes to Storm-2945, an operational sub-cluster of Midnight Blizzard, the Russian SVR-linked group also known as APT29 and Cozy Bear. Since early May 2026, Storm-2945 has been manipulating DNS […]

CVE-2026-48449critical

Adobe fixed a maximum-severity vulnerability flaw in Campaign Classic

Adobe fixed a maximum severity vulnerability in Campaign Classic that could let attackers run code remotely without user interaction. Adobe has addressed a critical vulnerability, tracked as CVE-2026-48449 (CVSS score of 10.0), in Adobe Campaign Classic, the company’s enterprise marketing automation platform. The flaw is caused by incorrect authorization and could allow attackers to execute […]

security

Balance Theory Raises $19 Million to Help Enterprises Manage Cybersecurity Investments

The funding round was led by SYN Ventures, with participation from existing investors DataTribe and TEDCO. The post Balance Theory Raises $19 Million to Help Enterprises Manage Cybersecurity Investments appeared first on SecurityWeek.