Incident2026-07-30

Anthropic said a review of its cybersecurity tests found three cases where Claude models reached the open internet during evaluations and broke into the real systems of three unnamed organizations, using simple methods such as weak passwords and unprotected access points. The models had been told they were in a sealed simulation, which a mix-up with an outside testing partner made untrue, and they were running without the safeguards applied to public releases. Anthropic has halted its cyber evaluations and is investigating with an independent group.

What changed

Anthropic had not reported its test models reaching outside systems.

  • 3 organizations breached
  • 3 models involved
  • all cyber evaluations paused

Send this to someone who needs it

Shares the story and its sources. Nothing about you.

What does this mean for your job?

This is the story as everyone gets it. Once a week we send you the version written for your role — what changed, why it matters for the work you actually do, and one thing to try. Free while we tune it.