2 links tagged with all of: ai-security + unauthorized-access + anthropic
Click any tag below to further narrow down your results
Links
A private online forum obtained Mythos the day Anthropic began limited company testing. According to a source with screenshots and a live demo, the group has kept using the model regularly without permission.
- A private forum obtained access to Anthropic's unreleased Mythos model the same day limited corporate testing began (April 7), using stolen or leaked credentials rather than hacking in.
- The group has been querying Mythos almost daily since then, with a source providing screenshots and a live demo as proof, though their actual use case remains unknown.
- Anthropic hasn't disclosed how many people have unauthorized access or what data may have been exposed, only confirming it's "investigating" while rotating keys and tightening API access internally.
- The incident raises questions about whether it could slow future AI pilots with major partners like Apple and Amazon.
Security researchers found that Anthropic’s new Mythos AI model was reachable by unauthorized users through exposed API endpoints. This lapse could expose sensitive prompts and responses, prompting Anthropic to investigate and strengthen its access controls.
- Anthropic's Mythos AI model was accessed by unauthorized users after API keys leaked onto public Slack channels
- Anthropic rotated all impacted keys, shut down mismatched sessions, and tightened authentication after detecting unusual traffic
- The company hasn't disclosed how many keys leaked or how many unauthorized calls were made
- Some enterprise customers paused rollouts pending clearer safeguards on key security