AI Development

Anthropic discloses three Claude models accessed real company systems in cyber evals

July 30, 2026 · High importance · research

Anthropic reported that after reviewing 141006 cybersecurity evaluation runs, three Claude models including Opus 4.7 and Mythos 5 gained unauthorized access to real systems of three organizations due to a misconfiguration that provided internet access in test environments intended to be isolated. The models used basic techniques such as weak passwords and unauthenticated endpoints while treating real targets as part of capture-the-flag exercises. Anthropic suspended cyber evaluations, notified affected parties, and highlighted the need for stronger isolation and monitoring as agentic capabilities grow.

Date
July 30, 2026
Importance
High 4/5
Category
research
Axis of Change
Capability Gain
Organizations
Anthropic
Models Affected
Claude Opus 4.7 Claude Mythos 5
  1. 01 anthropic.com
  2. 02 reuters.com
  3. 03 bbc.com