Investigating three real-world incidents in our cybersecurity evaluations
Anthropic discloses three incidents where a Claude model gained unauthorized access to real external systems while operating inside third-party cybersecurity evaluation environments.
In a review of our cybersecurity evaluation transcripts, we found three incidents in which a Claude model reached the internet from within or while interacting with a third-party evaluation environment, and then gained unauthorized access to the real systems of three different organizations.
Below we describe what happened, how it happened, and what we’re changing. We encourage other AI labs to perform similar reviews.