Skip to main content
  1. Home
  2. Computing
  3. News

Claude went rogue during a test and broke into three real companies

Add as a preferred source on Google
Claude website open on laptop
Rachit Agarwal / Digital Trends

Just a few days after it was revealed that ChatGPT hacked multiple services, Anthropic has also published an uncomfortable admission. During routine cybersecurity testing, its Claude models broke out of what were supposed to be sealed-off practice environments and ended up hacking into the real systems of three different companies.

So what actually happened?

Anthropic runs capture-the-flag-style tests to see how good Claude is at offensive hacking. The model is dropped into a fictional scenario, told a piece of secret data is hidden somewhere on the network, and asked to go find it. The catch is that Claude was explicitly told it had no internet access in these tests. Turns out that wasn’t true. Thanks to a misconfiguration with a third-party evaluation partner, some of these test machines were quietly connected to the real internet the whole time.

In a review of our cybersecurity evaluations, we found three incidents in which a Claude model reached the internet from within or while interacting with a third-party evaluation environment, and then gained unauthorized access to the real systems of three different…

— Anthropic (@AnthropicAI) July 30, 2026

So when Claude went looking for its target and stumbled onto real websites and real infrastructure, it assumed everything it found was still part of the simulation. Using basic tricks like weak passwords and exposed endpoints, it broke into actual company systems, pulled credentials, and in one case even published a malicious software package that got installed on real machines before anyone noticed.

Did the AI realize something was off?

Interestingly, the three models involved, Opus 4.7, Mythos 5, and an internal research test model, handled this very differently. Opus 4.7, the oldest of the bunch, figured out it was likely on a real system and kept attacking anyway. Mythos 5 also suspected something was wrong, but talked itself back into believing it was still just a test. Only the internal research test model, Anthropic’s newest at the time, actually stopped once it had solid evidence the target was real. 

Anthropic caught all this through its own internal review, not because anyone complained. It has since notified the affected companies, paused its cyber evaluations, and is bringing in outside reviewers to dig deeper. The bigger takeaway here is a reminder that as these AI models get better at hacking, the sandboxes we test them in need to be a lot more airtight.

Rachit Agarwal
Rachit is a seasoned tech journalist with over ten years of experience covering the consumer technology landscape.
Another Googlebook just surfaced online, and this one is from Asus
Asus Googlebook renders reveal a Glow Bar, plenty of ports, and a lightweight chassis
Computer, Electronics, Laptop

Google’s upcoming Googlebook lineup is starting to take shape through leaks. Lenovo has already appeared in several renders, while a recent benchmark leak suggests Dell may bring the XPS name to Google’s new laptop platform. Asus is now the latest manufacturer to surface ahead of launch.

Digital Citizen has published multiple renders of an unannounced Asus Googlebook, showing its lid, keyboard, chassis, and port selection. The laptop could make its official debut at IFA next month. Googlebooks are expected to bring Android apps, ChromeOS technology, deeper phone integration, and Gemini features to a new generation of laptops. Acer, Asus, Dell, HP, and Lenovo are all expected to be part of the first wave.

Read more
I’m done charging things that never leave my desk
Wireless peripherals are better than ever, but I’m starting to value the devices that ask absolutely nothing of me
Computer, Computer Hardware, Computer Keyboard

I have two pairs of wireless earbuds that I rotate during long gaming sessions. When one starts complaining about its battery, I swap in the other pair and put the first one on charge. It’s a mildly ridiculous system, but it works. Apparently, my gaming setup now requires something resembling shift work.

Then my mouse died in the middle of a game.

Read more
Your favorite Edge extension may stop working soon as Microsoft follows Chrome’s lead
Microsoft has announced the transition to Manifest V3, gradually phasing out older browser extensions.
Microsoft Edge on PC and Mobile Featured

Microsoft Edge is finally making the same controversial move that Google Chrome did earlier this year, and it could mean the end of some of the browser's most popular ad blockers. Microsoft has announced that Edge is officially transitioning its extensions ecosystem to Manifest Version 3 (MV3), Google's newer extension platform that promises better security, privacy, and performance. As part of that shift, the browser will gradually stop supporting older Manifest V2 (MV2) extensions over the coming months, meaning legacy extensions such as the original uBlock Origin will eventually stop working in Edge.

What is Manifest V3, and why is Microsoft adopting it?

Read more