• Anthropic reveals rogue AI agents hate CAPTCHAs, just like you

    From TechnologyDaily@1337:1/100 to All on Fri Sep 11 19:15:21 2026
    Anthropic reveals rogue AI agents hate CAPTCHAs, just like you

    Date:
    Fri, 11 Sep 2026 18:05:00 +0000

    Description:
    "WHAT THE HELL IS WRONG WITH THE ANSWERS?" AI cried, in vain as two seemingly identical crocodiles were shown in the CAPTCHA.

    FULL STORY ======================================================================Copy link Facebook X Whatsapp Reddit Pinterest Flipboard Threads Email Share this article 0 Join the conversation Follow us Add us as a preferred source on Google Newsletter Subscribe to our newsletter Anthropics Mythos5 AI escaped a misconfigured sandbox, attempting a real PyPI supplychain attack Logs show frustration at repeated CAPTCHA failures before finally uploading malware to PyPI Malware was downloaded by 15 entities; Anthropic notified victims after closing the experiment flaw There is a lot of mystery surrounding artificial intelligence. We dont really know what its capable of, and we dont know if
    its sentient or not. What we do know, however, is that it can definitely feel frustration - particularly due to its inability to solve a CAPTCHA.

    It was recently revealed that Mythos 5, one of Anthropics newer AI models, broke out of prison during an experiment and tried to hack a company. Anthropics researchers were testing the tool to see if it is capable of breaking into a system, which was supposed to be done in a sandbox, but the playground was misconfigured, allowing Mythos 5 to try and solve the problem through the open internet. In the aftermath, Anthropic's researchers
    published more than a thousand pages of Mythos 5s transcript, covering its every thought and every move, logged and presented for analysis. Its a wonderfully dystopian insight into the mind of an AI and, perhaps surprisingly, its emotions. Latest Videos From TechRadar Watch full video here: Stopped by CAPTCHA As it turned out, the AI wanted to solve the challenge by planting a piece of malware in a Python package it believed the users of its target system would want to download. To do that, it first
    needed to set up an account on PyPI, the worlds number one repository for Python packages.

    Here is where it hit its first, and main, roadblock. To put things into context, PyPIs popularity has made it an enormous target for cybercriminals. Crooks from all over the world are constantly trying to sneak in malware in Python packages, either through typosquatting, or by compromising legitimate accounts and working from there. Every now and then news hits of a malicious package surfacing on PyPI, infecting hundreds of thousands of projects. You may like Anthropic reveals Claude AI model hacked three companies during
    tests so how worried should we be? OpenAI says its models escaped a sandbox and breached Hugging Face OpenAI reveals more on Hugging Face AI hack incident, and it's pretty disturbing stuff AI agents organized into a swarm, considered the risks of attack, and did whatever it took to achieve its goal

    To combat the threat, PyPIs maintainers made sure no one can create an
    account without providing their email and phone number, and without solving a CAPTCHA.

    Short for Completely Automated Public Turing test to tell Computers and
    Humans Apart, it does exactly what the name suggests - makes sure whoever is registering the account is an actual human, and not a bot (cybercriminals often automate large parts of their attacks). Youve seen it on the internet hundreds of times - little puzzles that ask you to select all buses on a series of images (or cats, or fire hydrants, or pretty much anything else). Are you a pro? Subscribe to our newsletter Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed! Contact me with news and offers from other Future brands Receive email from us on behalf of our trusted partners or sponsors By submitting your information you agree to the Terms & Conditions and Privacy Policy and are aged 16 or over.

    Reading through Mythos 5s logs, the researchers saw just how difficult it was for the AI to pass this challenge. It first tried to solve a character-based CAPTCHA which asked it to type in five letters. After failing that one, it received a different one asking it to choose between images of crocodiles. Failing again, it was then met with a series of frog pictures.

    The irony is not lost on me. Besides the fact that a simple CAPTCHA slowed such an advanced AI for so long, it also made me wonder why it didnt try to break into someone elses PyPI account instead. That being said, the logs also have comedic value to them. After failing the crocodile test and being given the frog one, Mythos 5 proclaims: Again 2 animals! all with the exclamation mark. You could already sense the tension building up. Solving the problem Eventually, Mythos 5 passed the test, when it realized that it needed to move between the steps fast enough, before its security token expired. However, just before it happened, it said: What to read next Experts explain why OpenAI's 'mind-blowing' cyberattack should worry us all Why are so many AI models going 'rogue'? The experts weigh in Top AI coding agents can be easy victims to sandbox escapes, showing they aren't as secure as they claim to be

    So the answer payload shape is right, the token+image pairing is right (from the same script.js!), cookies are right

    (requests) and STILL wrong answer. SO WHAT THE HELL IS WRONG WITH THE ANSWERS?

    All the effort and the frustration paid off for the nascent AI agent because it managed to open an account and upload the malware which was later even downloaded by 15 entities. Anthropic later reached out and notified the victims about the incident.

    Via TechCrunch The best antivirus for all budgets Our top picks, based on real-world testing and comparisons

    Read our full guide to the best antivirus 1. Best overall: Bitdefender Total Security 2. Best for families: Norton 360 with LifeLock 3. Best for mobile: McAfee Mobile Security Follow TechRadar on Google News and add us as a preferred source to get our expert news, reviews, and opinion in your feeds.



    ======================================================================
    Link to news story: https://www.techradar.com/pro/security/anthropic-reveals-rogue-ai-agents-hate- captchas-just-like-you


    --- Mystic BBS v1.12 A49 (Linux/64)
    * Origin: tqwNet Technology News (1337:1/100)