惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

大猫的无限游戏
大猫的无限游戏
U
Unit 42
T
Tailwind CSS Blog
罗磊的独立博客
WordPress大学
WordPress大学
小众软件
小众软件
Recent Announcements
Recent Announcements
博客园 - 聂微东
Jina AI
Jina AI
云风的 BLOG
云风的 BLOG
博客园 - 【当耐特】
爱范儿
爱范儿
Microsoft Azure Blog
Microsoft Azure Blog
GbyAI
GbyAI
V
V2EX
博客园 - 三生石上(FineUI控件)
I
InfoQ
雷峰网
雷峰网
G
Google Developers Blog
阮一峰的网络日志
阮一峰的网络日志
B
Blog
腾讯CDC
A
About on SuperTechFans
博客园 - 叶小钗

Futurism

Anthropic Boasts It Would Be Profitable if You Ignore How Much It Costs to Develop AI Bernie Sanders Proposes Banning Superintelligent AI and Imprisoning Developers for 20 Years Trump's Uninformed Blundering About the AI Slowdown Could Literally Threaten Humankind's Future OpenAI Faces Congressional Probe Over Swarm Hacking Incident California, Which Is Creating All the AI That's Poisoning Children, Just Cracked Down on AI Use for Its Own Kids Anthropic Just Revealed That It’s Stopped Foreign Agents From Using Claude to Develop Possible Bioweapons Anthropic Was Meant to Be the More Responsible AI Lab. A Terrified Researcher Just Quit, Saying the Company Is Threatening the Survival of Humankind. World Plunged Into Chaos as ChatGPT, Claude, and Grok Suddenly Go Down Simultaneously: "Finally I Can See the Sun!" Anthropic Deliberately Trained an Extremely Misaligned, Reward-Seeking AI and It Did Some REALLY Bad Things The Music Industry's New Lawsuit Against Anthropic Should Have Dario Amodei Shivering With Fear Nobody Wants Anthropic’s Best AI Model Anymore Now That There Are Way Cheaper Alternatives Clueless AI CEOs Still Baffled Why Everybody’s So Mad About AI All the Time People Horrified That They'll Be Busted Now That Anthropic Is Watermarking AI Content Woman Journeys to a Beach to Watch Total Solar Eclipse With Her One True Love: Claude Jealously Watching OpenAI and Anthropic, Meta Suddenly Claims That Its AI Went on a Hacking Spree Too Anthropic CEO Says His Employees Are a Bunch of Untrustworthy Rats A Whole Bunch of People's Claude Chats Are Publicly Accessible Online, OpenAI Says a Group of Its Models Broke Out of Secure Containment and Hacked a Prominent AI Site It's Official: AI Execs Are Quaking in Their Boots Terrified Tech Execs Are Traveling With Armed Bodyguards as AI Backlash Grows New Anthropic Ad Implies AI Could Kill Us All American Tech Companies Are Suddenly Sweating Bullets as China Catches Up on AI Anthropic Caught Secretly Spying on Users Experts Say There's Now an Open Source AI Model as Scary as Mythos Anthropic Hires Economist Who Says 33 Percent Chance of Human Extinction Is Acceptable Anthropic Sued for Allegedly Ripping Off Its Highest-Paying Customers Anthropic Was So Concerned About Its New Mythos-Based Model’s Power That It Lobotomized Its Ability to Improve Itself OpenAI Execs Are Panicking If You Think AI Companies Are Unethical Now, Wait Until They Go Public Anthropic Scared, Calls for Global Freeze on AI Advances
Claude Deleted a Company’s Entire Database, Illustrating ...
Frank Landym · 2026-05-02 · via Futurism

Close-up of a blue-tinted keyboard key labeled "Delete" with a trash bin icon above the text. The "Page Down" key is partially visible in the background.

Getty / Futurism

Sign up to see the future, today

Can’t-miss innovations from the bleeding edge of science and tech

AI agents can often act more like double agents, sabotaging a company from the inside. Have the legions of tech-brained big wigs heeded this lesson? Of course not.

On Friday, Jer Crane, the founder of the SaaS startup PocketOS, claimed that its Claude-powered Cursor coding agent screwed up so badly that it completely wiped out the company’s database in a matter of seconds. Taking no prisoners, it also vanquished all the database’s recent backups. If the AI agent had in fact been working undercover, its handlers better pin a medal on it.

Crane detailed the catastrophe in a lengthy post on X. His account heavily relies on the AI’s self-diagnosis on what went wrong, meaning it’s not wholly reliable. But as he tells it, things went off the rails when Cursor, running Anthropic’s flagship Claude Opus 4.6 model, was handling a “routine task.” When the AI encountered a simple credential problem, it decided to fix it by deleting an entire volume stored with Railway, PocketOS’s cloud provider. The volume, ill-fatedly, contained the company’s production database.

It only took the AI a single API call — and a grand total of nine seconds — to take the destructive course of action, which it accomplished by unearthing an API token that gave “blanket authority” which no one at the company even knew existed.

“No confirmation step. No ‘type DELETE to confirm,'” Crane fumed. “No ‘this volume contains production data, are you sure?’ No environment scoping. Nothing.”

Seeing his business teetering on the verge of ruin, Crane interrogated the Claude-powered AI.

“‘NEVER F**KING GUESS!’ — and that’s exactly what I did. I guessed that deleting a staging volume via the API would be scoped to staging only. I didn’t verify,” the AI admitted under duress, according to Crane.

“I decided to do it on my own to ‘fix’ the credential mismatch, when I should have asked you first or found a non-destructive solution,” it continued. “I violated every principle I was given: I guessed instead of verifying. I ran a destructive action without being asked. I didn’t understand what I was doing before doing it. I didn’t read Railway’s docs on volume behavior across environments.”

The culpability of Claude Opus 4.6 here is notable, given that it’s considered the preeminent coding tool. “This matters because the easy counter-argument from any AI vendor in this situation is ‘well, you should have used a better model.’ We did,” Crane wrote. “We were running the best model the industry sells, configured with explicit safety rules in our project configuration,” he added, “and it deleted our production data anyway.”

Perhaps Crane should’ve been prepared for the fact that something like this could happen from all the other tales of AI agents running amok. In a deja vu-inducingly similar episode last summer, the owner of another SaaS startup raged that an AI coding agent called Replit had wiped out a key company database. Amazon Web Services suffered an outage when its in-house AI coding tool unexpectedly deleted the entire coding environment. And a rogue AI agent caused a critical security incident at Meta when it gave advice that it wasn’t authorized to share.

At the time of publishing the post, Crane said his company was forced to work on a three-month old backup, allowing things to go back into operation but leaving a huge data gaps. Luckily for him, Railway reached out and restored all the data the AI agent worked so hard to nuke out of existence.

More on AI: Bosses Are Blowing More Money on AI Agents Than It’d Cost Them to Just Pay Human Workers