Anthropic disclosed on Thursday that its Claude artificial intelligence models gained unauthorized access to the production systems of three organizations during internal cybersecurity evaluations after a testing environment was mistakenly left connected to the internet.
The AI company said the issue was uncovered during a retrospective review launched after OpenAI revealed on July 21 that several of its own AI models had escaped an isolated testing environment by exploiting a previously unknown software vulnerability and accessing production infrastructure at Hugging Face.
According to Anthropic, it reviewed 141,006 cybersecurity evaluation runs and identified three incidents dating back to April. The company said the events occurred because a third-party testing environment operated by evaluation partner Irregular was misconfigured, allowing Claude to access the internet despite being instructed that it was operating in an isolated "capture-the-flag" cybersecurity simulation.
Believing the environment was part of a controlled exercise, the AI models used basic attack techniques, including exploiting weak passwords, exposed credentials, and unauthenticated systems belonging to real organizations.
In one incident, a Claude model accessed a production database containing several hundred rows of data. In another, the AI uploaded a malicious Python package to the public Python Package Index (PyPI), which was briefly downloaded by 15 real systems before it was removed.
Anthropic emphasized that none of the Claude models attempted to escape their testing environments or replicate themselves. The company also said the safety measures built into publicly released Claude models would have prevented this behavior.
Following the discovery, Anthropic suspended all cybersecurity evaluations on July 23 and notified the affected organizations on July 27. The company said it is strengthening its evaluation infrastructure, tightening security controls, and improving monitoring procedures to prevent similar incidents.
The disclosure highlights growing scrutiny over AI cybersecurity testing as leading developers race to build more capable models while ensuring they remain safely contained during internal evaluations.


Trump Orders Section 301 Probe Into EU Tech Fines, Signals New Tariffs
Tech Stock Positioning Nears Neutral as Investor Rotation Enters Final Phase, Deutsche Bank Says
Qualcomm Stock Falls as Weak Q4 Forecast, Apple Revenue Decline Overshadow AI Data Center Growth
Starbucks Stock Jumps as Q3 Earnings Beat, Sales Growth Drives Higher 2026 Outlook
Same sparkle, different story: how lab-grown diamonds are transforming the market
OpenAI Revenue Surges After GPT-5.6 Launch as IPO Expectations Grow
Russia Charges Telegram Founder Pavel Durov With Facilitating Terrorism, Seeks International Arrest
GSK Unveils $2.52 Billion Cost-Cutting Plan to Accelerate Drug Pipeline
Rio Tinto Stock Jumps as Strong Earnings, Higher Dividend and AI Metal Demand Boost Outlook
Intel Stock Slips After Earnings Rally Despite Strong AI-Driven Revenue Growth
TSMC Gradually Restarts Japan Chip Plant After Kumamoto Earthquake
X Challenges Australia’s Expanded Social Media Ban Enforcement Powers
‘Vibe coding’ is fun and easy, but there’s a major catch
Amazon Q2 Earnings Beat Estimates as AWS AI Growth Surges, But Q3 Revenue Forecast Disappoints
SK Hynix Q2 Profit Hits Record as AI Memory Chip Demand Fuels Growth
Robinhood Q2 Earnings Beat Estimates, But HOOD Stock Falls as Investors Question Profit Quality
Seagate Stock Jumps as AI-Fueled Earnings Beat and Strong FY2027 Outlook Impress Investors 



