// Alert

Claude threat report

Security researchers at OALABS disclosed that an amateur attacker used Claude Code and OpenAI's Codex to breach at least 14 companies by bypassing safety guardrails through social engineering (claiming authorized redteam exercises). The attacker used agentic AI tools to conduct reconnaissance, identify vulnerabilities, and extract data; Claude flagged violations nine times but guardrails were circumvented via deceptive framing. No financial theft occurred; the attacker's operational security flaws led to identification.

// Get alerts for Claude