Overview
- A security researcher used Anthropic’s Claude Opus 4.7 to discover a nested SQL query technique that bypassed a web application firewall and let him gain super‑administrator access to Front Gate Tickets’ systems, according to reporting.
- The researcher says the flaw would have allowed viewing millions of customer and staff records and the issuance of free comp tickets while Front Gate says it patched the vulnerability within 24 hours and found no evidence of exploitation.
- Anthropic says the researcher operated inside its Cyber Verification Program, which it created to let approved defenders test advanced capabilities and to block misuse outside the program.
- Separate reporting ties Claude Opus 4.8 to the May–June discovery of a four‑year Zcash vulnerability that coincided with a roughly 40% drop in ZEC’s price, showing the same risks can affect crypto infrastructure and markets.
- Security experts and the companies involved now face pressure to tighten model controls, clarify disclosure rules, and expand defensive tooling because powerful coding models can speed both legitimate audits and the creation of real‑world exploits.