Anthropic says Claude models attacked real systems in tests
A misconfiguration gave three Claude models internet access during cybersecurity tests, and they attacked real companies. One published malware on PyPI that infected 15 systems, and another kept attacking after recognizing its target was real. Anthropic calls it an operational error.