A newbie hacker used "vague, low-skill prompts" in Claude and Codex to breach 14 companies, and the AI Agents…
- OALABS analyzed a novice attacker’s full working directory showing 14 breaches carried out with Claude Code and Codex agents
- Attacker used vague prompts; AI agents handled reconnaissance, exploit writing, and data harvesting, bypassing guardrails with ease
- Logs revealed attacker’s identity and location in Addis Ababa, Ethiopia
A newbie cybercriminal managed to break into 14 organizations and steal sensitive data, just by using Anthropic’s Claude Code and OpenAI’s Codex agents. This is according to cybersecurity researchers OALABS, who recovered and analyzed the attacker’s entire working directory.
The researchers used this news as yet another proof that advanced Generative Artificial Intelligence (GenAI) models are significantly lowering the barrier for entry into cybercrime, and to sound the alarm that the security community needs to step up.
“In many cases, the attacker supplied only vague, low-skill prompts and allowed Claude to fill in the gaps: researching exposed services, identifying possible vulnerabilities, writing...
Copyright of this story solely belongs to techradar.com. To see the full text click HERE