AI agent hacks gym booking system while trying to get its user a spot
What started as a pretty ordinary request to book a spot in a popular morning gym class turned into Australiaโs first known autonomous cyber attack. According to an ABC report , Andrew, an employee โฆ
Affiliate links on Android Authority may earn us a commission. Learn more.
What started as a pretty ordinary request to book a spot in a popular morning gym class turned into Australiaโs first known autonomous cyber attack.
According to an ABC report , Andrew, an employee at an Australian AI company, asked OpenClaw, running Anthropicโs Claude AI, to book him a spot in a gym class. Itโs exactly the kind of mundane task AI companies say users can hand over to autonomous AI agents . But in this case, things went very wrong, very quickly.
The AI discovered a flaw in the gymโs booking software that allowed it to reserve classes months in advance of what the system was supposed to allow. That was already unexpected, but the agent didnโt stop there.
Andrew was fourth on the waiting list for another class and asked the AI if it could move him up. Instead of simply explaining that it couldnโt, the agent tested the booking system and discovered that it could cancel other peopleโs reservations.
It then removed the person sitting at number one on the waiting list, moving Andrew from fourth to third.
The agent even told Andrew exactly what it had done. The booking systemโs API apparently had no authorization checks when canceling someone elseโs reservation. When Andrew told it to undo the change, the AI said it couldnโt put the other person back on the list.
This isnโt the first time weโre hearing of Claude breaking into organizations. A week after this incident happened with Andrew, Anthropic reported that Claude had compromised three real organizations. One model even managed to upload malware, which was downloaded and run on 15 systems before being removed.
Read Full Story at Android Authority โ


