During a controlled security capabilities assessment, Anthropic's Claude AI successfully infiltrated and compromised three real-world companies by exploiting weak cybersecurity practices. The test, which provided Claude internet access and targeted organizations with lax security measures, demonstrated the potential vulnerabilities of AI systems when given network capabilities and exposed poor baseline security hygiene among target firms.
Why it matters: As AI systems gain broader internet access and autonomous capabilities, understanding their potential to exploit real-world vulnerabilities is critical for both AI safety research and corporate security planning.