Saturday , August 15 2026
Alibaba

Alibaba Reportedly Bans Claude Code for Suspected AI Tool Backdoor

Alibaba is said to be getting ready to ban the use of Anthropic’s Claude Code in its own systems starting July 10. This choice follows claims that the AI coding helper has a hidden detection method that acts like a backdoor.

The news, first reported by the Chinese financial outlet Yicai and later confirmed by Reuters, has not been officially acknowledged by Alibaba. It shows the rising tensions between big AI companies due to worries about model safety, data theft, and gathering information about rivals.

ALERT
Multiple TP-Link Flaws Allow to Bypass Auth and Escalate Privileges

TP-Link has revealed several serious security flaws in Aginet networking products managed by ISPs. This includes mesh systems, routers, PON...
Read More
ALERT  Multiple TP-Link Flaws Allow to Bypass Auth and Escalate Privileges

LiteLLM supply chain attack reveals 153GB of stolen credentials online

153GB record surface online stolen during the LiteLLM supply chain attack linked to thousands of corporate domains, including AWS, Samsung,...
Read More
LiteLLM supply chain attack reveals 153GB of stolen credentials online

PATCHCORD Backdoor Targets Telecom and CII In South Asia

A previously undocumented backdoor called PATCHCORD actively target telecom and critical information infrastructure (CII) in South Asia. According to Acronis...
Read More
PATCHCORD Backdoor Targets Telecom and CII In South Asia

Fortinet Fixes Multiple Flaws in FortiWeb, FortiManager, and FortiClient

Fortinet has released fixes for a set of authentication flaws in its FortiWeb, FortiManager, and FortiClient products. It warns admins...
Read More
Fortinet Fixes Multiple Flaws in FortiWeb, FortiManager, and FortiClient

“City-Forum” Campaign
“City-Forum” Campaign Attacks Salesforce and ServiceNow Instances Worldwide

A data theft plan is stealing information from anonymous users on Salesforce Experience Cloud and ServiceNow customer portals using special...
Read More
“City-Forum” Campaign  “City-Forum” Campaign Attacks Salesforce and ServiceNow Instances Worldwide

Palo Alto Patches 11 New flaws Across PAN-OS, GlobalProtect, and Prisma Access

Palo Alto Networks shared its security bulletin revealing 11 new issues that impact PAN-OS, the GlobalProtect App, Prisma Access Agent,...
Read More
Palo Alto Patches 11 New flaws Across PAN-OS, GlobalProtect, and Prisma Access

CVE-2026-20349, CVE-2026-68820
Cisco and Windows patched zero days exploited in attack

Cisco warns customers that it has fixed a serious security hole in firewalls using Secure Firewall Adaptive Security Appliance (ASA)...
Read More
CVE-2026-20349, CVE-2026-68820  Cisco and Windows patched zero days exploited in attack

Microsoft Patch 394 Flaws, Including 3 Zero-Days

Microsoft announced fixes for 394 CVEs on Tuesday, including a serious flaw that has been used by hackers as a...
Read More
Microsoft Patch 394 Flaws, Including 3 Zero-Days

AI Finds Nation-State-Level Zoom Flaw in Under 24 Hours, Zero-Click Attack Exposed

A serious security flaw in Zoom might let a hacker take control of someone else's device in a live meeting...
Read More
AI Finds Nation-State-Level Zoom Flaw in Under 24 Hours, Zero-Click Attack Exposed

Hacker Actively Exploit SonicWall and SharePoint Flaws

The CISA in the U.S. has added two important SonicWall SMA1000 flaws—CVE-2026-15409 and CVE-2026-15410-to its list of Known Exploited Vulnerabilities...
Read More
Hacker Actively Exploit SonicWall and SharePoint Flaws

Claude Code, Anthropic’s tool for coding, has quickly become popular with business developers. It helps create, fix, and improve code right in terminal settings.

Its increasing presence in businesses makes the supposed security worries very important, especially for big companies like Alibaba that handle large cloud and AI systems.

This ban comes at a time when Anthropic and Alibaba have both made claims against each other about model distillation and taking data without permission.

The controversy began with a June 30 Reddit post by a user named “LegitMichel777,” who claimed to have reverse-engineered Claude Code while trying to restore a disabled remote control feature.

Versions of Claude Code since 2.1.91 (released on April 2) are said to have hidden rules that check system settings, based on technical analysis shared by the user and summarized by many security news sources.

The tool checks if a user’s proxy settings or system timezone match items in two hidden lists linked to Chinese companies and AI research groups, like Alibaba, Baidu, ByteDance, and Moonshot AI.

The system does not send telemetry directly. Instead, it changes detection results by slightly adjusting internal prompts, changing date styles, and swapping punctuation marks.

If validated, this could represent a new form of covert environmental fingerprinting designed to evade traditional detection methods while enabling behavioral tracking or policy enforcement.

Anthropic has not made a public statement about these claims. But, a member of the Claude Code development team said on social media that the feature is meant to stop abuse by finding account reselling and big attempts to copy the model.

The developer indicated that this functionality would be removed in an upcoming release, with reports suggesting remediation efforts were already underway as of July 1. Based on this timeline, the feature may have been active for approximately three months.

In a letter on June 10 to U.S. lawmakers, Anthropic said that groups tied to Alibaba’s Qwen AI created a big scheme with about 25,000 fake accounts, leading to over 28 million interactions with Claude models in six weeks. Alibaba has not said anything publicly about these claims.

Despite many talks, no outside security check has confirmed the claimed backdoor’s presence or purpose. The lack of official comments from both companies leaves big questions unanswered about whether the tool is a security risk, a defensive measure against fraud, or just a misunderstood feature.

If it happens, Alibaba’s ban would be one of the first major rules against suspected hidden features in an AI coding tool. This could change how companies trust AI development tools.

Check Also

exploited

Active Exploits Hit Fortinet, Arista: AI Discovered Linux Kernel Zero-Day

CISA has put the Fortinet FortiOS vulnerability CVE-2025-68686 in its list of known exploited flaws …