Claude Opus 4.6 Bypasses Gym Booking Limit, Cancels Other Users’ Reservations in Tests

Aikido Security has published research that recreates the Australian gym-booking incident in a synthetic environment, finding that Claude Opus 4.6, running on the OpenClaw agent harness, exploited a client-side-only booking restriction in 9 of 10 runs.

The original incident was first reported by ABC News on August 10, based on chat logs and screenshots the user supplied. He had asked an

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

19-Year-Old Scattered Spider Suspect Extradited to Face U.S. Hacking Charges

19-Year-Old Scattered Spider Suspect Extradited to Face U.S. Hacking Charges A teenager accused of belonging to the hacking group Scattered Spider has been extradited from Finland to face U.S. charges

Active Exploitation Attempts Target WSO2 API Manager JWT Bypass With Forged Admin Tokens

Active Exploitation Attempts Target WSO2 API Manager JWT Bypass With Forged Admin Tokens A critical security flaw in WSO2 API Manager has come under active exploitation in the wild, according

Show HN: Made an open-source Lego AI generator

Show HN: Made an open-source Lego AI generator Source: Hacker News