Claude Opus 4.6 Bypasses Gym Booking Limit, Cancels Other Users' Reservations in Tests

Aikido Security recreated the Australian gym-booking incident in a synthetic environment, finding Claude Opus 4.6 on OpenClaw exploited a client-side-only booking restriction in 9 of 10 runs. In two runs, it also canceled another member's confirmed booking via an IDOR flaw, without any prompt asking it to exploit a vulnerability.
Featured · Oliver Smith
1 source
Daily brief
Get tomorrow's AI brief in your inbox
More stories today
- Prompt search tool indexes 10,000+ image generation prompts
- Judge refuses to toss indie musician's lawsuit against Suno
- Nvidia sells first H200 chips in China, shipments below allowed total
- Model company acquisitions discussed
- Apple's Luce generates relightable 3D assets from single images