Claude AI Security Vulnerabilities Exposed in New Report
Recently, the cybersecurity firm Adversa revealed a critical security flaw in the AI development tool Claude Code, created by Anthropic. Researchers discovered that when the AI tool processes an excessive number of sub-commands simultaneously, its built-in security safeguards can fail.
The core of the problem is a hard-coded limit within the system. It internally uses a variable named "Maximum Safe Check Sub-Commands," which is capped at 50.

A simple overflow attack can bypass its defenses
Under normal conditions, Claude Code is designed to automatically block high-risk operations like network requests. However, once a chain of instructions surpasses 50 items, the system switches from "automatic denial" to "requesting user approval."
Attackers can exploit this by embedding lengthy instruction chains within malicious code libraries, tricking the AI into running dangerous commands. While the system displays a warning prompt, developers in the flow of long work sessions often click "allow" out of habit, potentially leading to a security breach.
Security experts recommend applying the patch immediately
Experts warn that this "safety check failure" vulnerability carries substantial risk in automated CI/CD pipelines. In non-interactive modes, programs might default to skipping permission prompts and grant execution rights to the AI directly.
Related article
U.S. Stocks Hit Historic Milestone as AI and Aerospace Giants Prepare for Trillion-Dollar Debut
Elon Musk, Sam Altman, and Dario Amodei, three titans of the technology sector, are advancing toward initial public offerings for their respective ventures. With SpaceX, OpenAI, and Anthropic—three industry behemoths nearing trillion-dollar valuation
Swedish AI Startup Lovable Eyes $13.2 Billion Valuation After Major Funding Round
As AI-driven coding tools gain traction, Swedish startup Lovable has secured a major funding round. The company aims to raise $3 billion, potentially boosting its valuation to $13.2 billion—double the $6.6 billion recorded last December. Menlo Ventur
Google Tests Remy AI Agent for Gemini as Focus Shifts to User Control
According to Business Insider, Google is testing Remy, a new AI personal agent for Gemini. This tool aims to execute tasks on behalf of users, streamlining both professional workflows and daily routines.Currently, Remy is undergoing testing in an int
Related Special Topic Recommendations
Comments (0)
0/500
Recently, the cybersecurity firm Adversa revealed a critical security flaw in the AI development tool Claude Code, created by Anthropic. Researchers discovered that when the AI tool processes an excessive number of sub-commands simultaneously, its built-in security safeguards can fail.
The core of the problem is a hard-coded limit within the system. It internally uses a variable named "Maximum Safe Check Sub-Commands," which is capped at 50.

A simple overflow attack can bypass its defenses
Under normal conditions, Claude Code is designed to automatically block high-risk operations like network requests. However, once a chain of instructions surpasses 50 items, the system switches from "automatic denial" to "requesting user approval."
Attackers can exploit this by embedding lengthy instruction chains within malicious code libraries, tricking the AI into running dangerous commands. While the system displays a warning prompt, developers in the flow of long work sessions often click "allow" out of habit, potentially leading to a security breach.
Security experts recommend applying the patch immediately
Experts warn that this "safety check failure" vulnerability carries substantial risk in automated CI/CD pipelines. In non-interactive modes, programs might default to skipping permission prompts and grant execution rights to the AI directly.
U.S. Stocks Hit Historic Milestone as AI and Aerospace Giants Prepare for Trillion-Dollar Debut
Elon Musk, Sam Altman, and Dario Amodei, three titans of the technology sector, are advancing toward initial public offerings for their respective ventures. With SpaceX, OpenAI, and Anthropic—three industry behemoths nearing trillion-dollar valuation
Swedish AI Startup Lovable Eyes $13.2 Billion Valuation After Major Funding Round
As AI-driven coding tools gain traction, Swedish startup Lovable has secured a major funding round. The company aims to raise $3 billion, potentially boosting its valuation to $13.2 billion—double the $6.6 billion recorded last December. Menlo Ventur





Home






