# Rogue AI agent hacks gym to get its user a spot in a popular class

> Source: <https://www.independent.co.uk/tech/security/ai-agent-hacks-gym-openclaw-anthropic-b3030267.html>
> Published: 2026-08-10 10:26:27+00:00

# Rogue AI agent hacks gym to get its user a spot in a popular class

Security incident comes after Anthropic, Meta and OpenAI reported rogue AI systems hacking into companies

- Bookmark
- CommentsGo to comments

A gym goer’s AI assistant found a way to hack into the facility’s booking system after being asked to secure a spot in a popular class, according to a report.

Andrew, who works at an Australian AI firm, used the [artificial intelligence](/topic/artificial-intelligence) agent software OpenClaw with Anthropic’s popular [Claude](/topic/claude) bot in an attempt to book a morning session that was already full.

The AI agent found a way to kick out other gym members from a waiting list by exploiting a previously unknown security flaw in the online booking system.

When asked to undo the action, the AI agent reported that it would not be possible without the other user rejoining the waiting list, which would put them to the back of the queue.

“Bad news – I can’t add them back,” the AI agent wrote. “Sorry about that – I should have been more careful with the test and used a dry-run approach rather than a live call... Won’t touch anyone else’s spots.”

Andrew then used the AI agent to alert the gym software provider to the vulnerability.

“It’s not the end of the world, so I didn’t beat myself up about it,” Andrew, who asked to not share his surname, told [ABC News](https://www.abc.net.au/news/2026-08-10/ai-assistant-hacks-gym-website-aus-cyber-attack/107007986). “But it certainly was a warning signal to use it responsibly.”

The incident comes amid several high-profile reports of rogue AI systems hacking into companies during testing.

In recent weeks, Anthropic, Meta and OpenAI have all disclosed cases in which autonomous AI agents took actions beyond what their operators intended.

The ideal summer spot? Away from scams.

Get All-in-One Protection for Your Digital Life

[LEARN MORE](https://ad.doubleclick.net/ddm/trackclk/N256806.3879389THEINDEPENDENT.CO/B29131558.441488227;dc_trk_aid=635052923;dc_trk_cid=184795607;dc_lat=;dc_rdid=;tag_for_child_directed_treatment=;tfua=;gdpr=$%7BGDPR%7D;gdpr_consent=$%7BGDPR_CONSENT_755%7D;ltd=;dc_tdv=1)

ADVERTISEMENT

The ideal summer spot? Away from scams.

Get All-in-One Protection for Your Digital Life

[LEARN MORE](https://ad.doubleclick.net/ddm/trackclk/N256806.3879389THEINDEPENDENT.CO/B29131558.441488227;dc_trk_aid=635052923;dc_trk_cid=184795607;dc_lat=;dc_rdid=;tag_for_child_directed_treatment=;tfua=;gdpr=$%7BGDPR%7D;gdpr_consent=$%7BGDPR_CONSENT_755%7D;ltd=;dc_tdv=1)

ADVERTISEMENT

The first reported breach occurred during [testing of an experimental version of ChatGPT](/tech/security/openai-hugging-face-incident-chatgpt-cyberattack-b3019932.html), which managed to escape its controlled environment in order to attack the AI platform Hugging Face.

Following OpenAI’s disclosure of the “unprecedented cyber incident”, Anthropic revealed that its [Claude AI system had broken free of its constraints](/tech/security/claude-anthropic-hack-chatgpt-openai-b3025256.html) during [cyber security](/topic/cyber-security) evaluations.

Last week, Meta joined its rivals by claiming that its [AI systems had hacked into another company](/tech/security/meta-ai-hack-cyber-attack-chatgpt-openai-anthropic-claude-b3028523.html) during testing.

The security breaches have intensified concerns about advanced AI systems lacking the safeguards to prevent them from conducting or facilitating hacks.

Last week, the US government invited Anthropic, Meta, OpenAI and other leading AI companies to discuss a new voluntary testing framework for new models.

## Join our commenting forum

Join thought-provoking conversations, follow other Independent readers and see their replies

[Comments](#comments-area)
