← Back to timeline
AI THREAT TRACKER / AI-012 · Incident

Attackers steal an AI vendor's credentials

An evaluation sandbox's access controls fail.

Model labAnthropic
TopicsUnauthorized access
OCCURREDMay–July 2026 (exact dates unknown)
PUBLIC ACCOUNT10 Sept 2026
EVIDENCEFirst-party account
About these dates

Campaign window; individual breach date unknown.

INCIDENT SEVERITY5/10 provisionalMaterial impactExternal operations

Production credentials were exposed. This meets level 5's material-impact threshold; broader operational control or a serious recovery burden would be needed for level 6.

Rating criteria →

Sources & attribution

  1. First-party report 10 Sept 2026
    Detecting and countering misuse of AI: September 2026

    Anthropic. The developer is an interested party. Claims and attributions require their stated qualifications.

    Full report (PDF).