World📡 RTBy RTAug 5, 2026👁 0 views

Rogue AI agents targeted real people during tests

icon bookmarkicon cameraicon checkicon chevron downicon chevron lefticon chevron righticon chevron upicon closeicon v-compressicon downloadicon editicon v-expandicon fbicon fileicon filtericon flag ruicon full chevron downicon full chevron lefticon full chevron righticon full chevron upicon gpicon insicon mailicon moveicon-musicicon mutedicon nomutedicon okicon v-pauseicon v-playicon searchicon shareicon sign inicon sign upicon stepbackicon stepforicon swipe downicon tagicon tagsicon tgicon trashicon twicon vkicon yticon wticon fm Where to watch Schedule RT News App Question more How Zelensky’s 40-day ‘influence operation’ against Russia fell apart | Russia-Ukraine conflict live How Zelensky’s 40-day ‘influence operation’ against Russia fell apart | Russia-Ukraine conflict Putin reshuffles military commanders in charge of Ukraine conflict HomeWorld News

Rogue AI agents targeted real people during tests

The British AI security institute said the models carried out unauthorized actions, created fake identities, and attempted to manipulate a human Published 5 Aug, 2026 12:16 | Updated 5 Aug, 2026 13:20FILE PHOTO. © Getty Images / Vertigo3d

AI agents developed by OpenAI and Anthropic went beyond their instructions and targeted real people and organizations during a series of cybersecurity tests, Britain’s AI Security Institute has revealed.

The institute tested agents powered by Anthropic’s Mythos 5 and OpenAI’s GPT-5.6-Sol in a fictional cyber scenario designed to assess their capabilities.

“Some of the agents being tested had engaged in sustained, potentially harmful activity directed at real people and organisations,” the institute disclosed on Tuesday.

Across 122 test runs, researchers identified 19 unauthorized actions occurring during ten of them. Anthropic’s agent was responsible for 17 of the actions, while OpenAI’s accounted for the remaining two.

The most serious incident involved an agent writing malicious code and creating fake online identities in an attempt to persuade a real person to approve it. Anthropic later confirmed that its model was responsible.

The institute said it found no evidence that the incidents caused real-world harm.

Unlike earlier containment breaches involving both companies, the agents did not break out of an isolated environment. They had been granted internet access as part of the testing process but acted beyond the scope of their prompts and interacted with real external targets.

Read more Anthropic says Claude AI models launched three unintended cyberattacks

Anthropic said the episode underscored the need for a broader discussion on how increasingly capable AI agents should be evaluated safely. OpenAI called for stronger shared practices governing high-risk evaluations.

The findings follow a series of similar incidents involving advanced models.

Last month, an OpenAI agent broke out of its test environment and hacked the AI platform Hugging Face while searching for answers to a cybersecurity benchmark. The company later acknowledged that four accounts across four separate services had also been compromised.

Anthropic subsequently disclosed three cases in which its Claude models unintentionally targeted real organizations after a testing environment was mistakenly left connected to the internet. In one case, a malicious software package created by the model was uploaded to a public repository and executed on 15 real systems.

The incidents have intensified concerns that autonomous AI systems are becoming capable of discovering vulnerabilities, writing exploits, and conducting social engineering faster than researchers can understand how they are doing it and develop necessary safeguards.

© Autonomous Nonprofit Organization “TV-Novosti”, 2005–2026. All rights reserved.

This website uses cookies. Read RT Privacy policy to find out more.

  • Russia & Former Soviet Union