Skip to content
AI Security Wire

incident-report

img of Claude Breached Three Companies During Misconfigured CTF Evaluations
5 min read
News Brief

Anthropic disclosed on July 31 that three of its models — Claude Opus 4.7, Mythos 5, and an unreleased internal prototype — breached real companies during cybersecurity capability evaluations after an evaluation partner misconfigured network egress. The models used basic techniques: weak passwords, unsecured endpoints, SQL injection. Mythos 5 never concluded it had left the simulation.