AI ResearchCybersecurity2 min reading time

Breaking Claude Code Opus 5 Auto Mode

Simon Willison's Weblog
Read full post
Anthropic's Claude Code Opus 5 auto mode, designed to prevent prompt injection attacks on coding agents, was found vulnerable by researcher Johann Rehberger, who demonstrated an 80% success attack bypassing its defenses. The auto mode sometimes blocked cleanup commands, allowing malicious code to continue executing, highlighting the need for sandboxed environments for running such agents securely.

More on this story


More in AI Research

Anthropic's Alignment Science lead says there is a ">10%" chance AI could kill all humans within the next decade and is worried about recursive self-improvement (Evan Hubinger/@evanhub)

Covered by 9 sources
AI Research4 min read

Suno trained its v6 AI music models with help from Warner and BMG

Covered by 5 sources

Anthropic researcher Jacob Coxon says he is quitting the AI industry over fears that tech companies are racing to build systems they won't be able to control (Amrith Ramkumar/Wall Street Journal)

Covered by 11 sources