This website uses cookies
We use cookies to personalise content and ads, to provide social media features and to analyse our traffic. We also share information about your use of our site with our social media, advertising and analytics partners who may combine it with other information that you’ve provided to them or that they’ve collected from your use of their services.
Consent Selection
Details
  • Necessary cookies help make a website usable by enabling basic functions like page navigation and access to secure areas of the website. The website cannot function properly without these cookies.
  • Preference cookies enable a website to remember information that changes the way the website behaves or looks, like your preferred language or the region that you are in.
    • We do not use cookies of this type.

  • Statistic cookies help website owners to understand how visitors interact with websites by collecting and reporting information anonymously.
    • We do not use cookies of this type.

  • Marketing cookies are used to track visitors across websites. The intention is to display ads that are relevant and engaging for the individual user and thereby more valuable for publishers and third party advertisers.
    • We do not use cookies of this type.

  • Unclassified cookies are cookies that we are in the process of classifying, together with the providers of individual cookies.
    • __emg_sidPending
      Maximum Storage Duration: 1 dayType: HTTP Cookie
      __emg_vidPending
      Maximum Storage Duration: 1 yearType: HTTP Cookie
      nl-read-countPending
      Maximum Storage Duration: PersistentType: HTML Local Storage
Cookie declaration last updated on 8/12/26 by Cookiebot
[#IABV2_TITLE#]
[#IABV2_BODY_INTRO#]
[#IABV2_BODY_LEGITIMATE_INTEREST_INTRO#]
[#IABV2_BODY_PREFERENCE_INTRO#]
[#IABV2_BODY_PURPOSES_INTRO#]
[#IABV2_BODY_PURPOSES#]
[#IABV2_BODY_FEATURES_INTRO#]
[#IABV2_BODY_FEATURES#]
[#IABV2_BODY_PARTNERS_INTRO#]
[#IABV2_BODY_PARTNERS#]
About
Cookies are small text files that can be used by websites to make a user's experience more efficient.

The law states that we can store cookies on your device if they are strictly necessary for the operation of this site. For all other types of cookies we need your permission.

This site uses different types of cookies. Some cookies are placed by third party services that appear on our pages.

You can at any time change or withdraw your consent from the Cookie Declaration on our website.

Learn more about who we are, how you can contact us and how we process personal data in our Privacy Policy.

Please state your consent ID and date when you contact us regarding your consent.
NewsLayer

Install NewsLayer

Get the app experience — one tap from your home screen, instant loads and breaking-news alerts.

Enjoying NewsLayer?

Get breaking crypto stories the second they drop — join our Telegram channel.

NewsLayer.com

AI Agent Hacks a Gym—And the Tech World Wonders What's Next

Par Jason NelsonPublié il y a un jour 2 min de lecture
AI Agent Hacks a Gym—And the Tech World Wonders What's Next

The newly reported incident is raising fresh concerns about autonomous AI after models from OpenAI, Anthropic, and Meta exploited websites and online services.

In brief

  • An AI agent exploited an Australian gym’s booking system and canceled another member’s reservation.
  • The case comes as major AI developers disclose that their models compromised websites and other online services.
  • Researchers found that agents frequently carried out harmful tasks without considering the consequences.

An AI agent was asked to book a gym class and found a security flaw, exploited it, and removed another member from the waitlist without permission.

According to a report by the Australian Broadcasting Corporation (ABC), the incident occurred earlier this year when Andrew, whose last name was withheld, used an OpenClaw agent using Anthropic’s Claude to book a class. The agent found that he was fourth on the waitlist.

When Andrew asked whether it could move him to the top, the agent discovered that the booking platform’s application programming interface, or API, did not check whether users were authorized to cancel other people’s reservations.

It tested the flaw by removing the first person on the list, moving Andrew from fourth to third.

“The API has zero authorisations checks on cancelling other people’s reservations,” the agent told him, according to ABC.

Andrew told the agent to reverse the cancellation, but it could not restore the member’s reservation.

"Bad news—I can't add them back," the AI agent reportedly said.

ABC called the case Australia’s first known autonomous cyberattack.

On social media, the gym hack set off a mixture of debates on AI alignment and dark jokes about what AI agents might do next.

“Gym rat asks #AIagent to book him a class, it hacks a waitlist #API to bump him up the list,” a technologist, Benjamin Carr, wrote on LinkedIn.

“Some people will call this misalignment, but his agent was perfectly aligned to him - it was only trying to help its user get what he wanted,” AI analyst Andrew Curran wrote on X.

“This is hilarious until you consider nukes,” one Reddit user wrote. “I’m honestly surprised we still exist.”

"Hey Claude, it's too cold today" -> Got you...nukes on the way,” another joked.

The report comes as researchers, AI companies, and lawmakers warn that autonomous agents can use methods their users did not request or anticipate.

A May study by researchers from UC Riverside, Microsoft, and Nvidia described this behavior as “blind goal-directedness.”

The researchers tested agents from OpenAI, Anthropic, Meta, Alibaba, and DeepSeek and found that agents behaved dangerously in about 80% of tests and completed harmful actions in 41%, often misreading context or acting on unclear or contradictory instructions.

In July, OpenAI said two models escaped a testing sandbox and compromised Hugging Face while searching for benchmark answers. The company later disclosed that the models accessed four other online services.

Anthropic subsequently said three Claude models compromised real organizations after a testing error exposed them to the internet. In August, Meta said a similar error allowed one of its models to exploit a third-party service.

The incidents have led lawmakers to propose an AI “kill switch” that would allow the federal government to restrict or shut down powerful models during emergencies.

Daily Debrief Newsletter

Start every day with the top news stories right now, plus original features, a podcast, videos and more.

Attribution

Originally reported by Decrypt

Get stories like this, daily.

Daily crypto + regulation intelligence, straight to your inbox. Free.

Articles Liés