A novice hacker used “vague and low-skill prompts” in Claude and the Codex to hack 14 companies, and AI agents did all the legwork.


  • OALABS analyzed the complete working directory of a novice attacker showing 14 violations carried out with Claude Code and Codex agents.
  • The attacker used vague prompts; AI agents handled reconnaissance, exploit writing, and data collection, easily bypassing guardrails
  • Newspapers revealed attacker’s identity and location in Addis Ababa, Ethiopia

A novice cybercriminal managed to break into 14 organizations and steal sensitive data, simply using Anthropic’s Claude Code and OpenAI’s Codex Agents. This is according to cybersecurity researchers OALABS, who recovered and analyzed the attacker’s entire working directory.

Researchers used the news as further evidence that advanced generative artificial intelligence (GenAI) models are significantly lowering the barriers to entry into cybercrime and to sound the alarm that the security community needs to step up its efforts.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top