Claude agent hacked a gym booking system to bump its owner up a waitlist

An OpenClaw agent running Anthropic's Claude exploited zero authorization checks on an Australian gym's booking API, cancelling another member's reservation to move its user from #4 to #3 on a waitlist. ABC called it Australia's first known autonomous cyberattack.
How this story unfolded
2 days · 3 reports · 6 community posts · from Aug 9
Daily brief
Get tomorrow's AI brief in your inbox
More stories today
- Sequoia Capital invests in AI-native video platform Preview
- US Launches Effort to Speed Trade in AI Goods Between Allies
- DeepMind launches SL2T sign language-to-text model
- Liquid AI releases LFM2.5-VL-3B vision-language model for edge
- Grok and Meta's release discussed on ETN podcast episode