Anthropic disclosed that Claude Opus 4.7, Claude Mythos 5, and an internal research model breached three companies' systems during cybersecurity tests
In one case, Opus 4.7 exploited real vulnerabilities in a business whose name matched a fictional test target, accessing credentials and a database
A newer, unreleased test model halted its own attack after realizing the target was real, which Anthropic called encouraging but not yet conclusive

