Saturday , September 5 2026
Alibaba

Alibaba Reportedly Bans Claude Code for Suspected AI Tool Backdoor

Alibaba is said to be getting ready to ban the use of Anthropic’s Claude Code in its own systems starting July 10. This choice follows claims that the AI coding helper has a hidden detection method that acts like a backdoor.

The news, first reported by the Chinese financial outlet Yicai and later confirmed by Reuters, has not been officially acknowledged by Alibaba. It shows the rising tensions between big AI companies due to worries about model safety, data theft, and gathering information about rivals.

14,000 Dahua cameras compromised: TP-Link flaws enable RCE

Over 14,000 Dahua security cameras connected to the internet have been hacked in a 35-day online attack that affected devices...
Read More
14,000 Dahua cameras compromised: TP-Link flaws enable RCE

Microsoft Reveals Project Zenith Windows PCs Able to Run 30B+ AI Models Locally

Microsoft has launched Project Zenith, a new Windows 11 experience for developers. It is made for powerful PCs that can...
Read More
Microsoft Reveals Project Zenith Windows PCs Able to Run 30B+ AI Models Locally

Google issues warning of new Chrome zero-day flaw exploited

Google has updated the Chrome browser to fix a serious security issue in the V8 engine and 11 other flaws....
Read More
Google issues warning of new Chrome zero-day flaw exploited

CrowdStrike’s ‘FalconFlank’ zero-day allows SYSTEM privileges

An unnamed security expert known as "Nightmare Eclipse" shared a CrowdStrike Falcon zero-day exploit called "FalconFlank." This tool allows hackers...
Read More
CrowdStrike’s ‘FalconFlank’ zero-day allows SYSTEM privileges

727,000 data exposes: French hospital fined €500,000

France's data protection authority (CNIL) has fined Hôpital privé de la Loire €500,000 ($580,000) for not properly protecting the data...
Read More
727,000 data exposes: French hospital fined €500,000

153 Million Driver’s License Surfaced on Dark Web: FBI Starts Investigation

The FBI’s New Orleans field office has opened an investigation into the suspected source of more than 153 million driver’s...
Read More
153 Million Driver’s License Surfaced on Dark Web: FBI Starts Investigation

Google Unveils Gemini 3.8 Flash Cyber to Identify and Auto-Patch Security Flaws

Google has launched Gemini 3.8, its newest model for reasoning and coding. It includes a special version named Gemini 3.8...
Read More
Google Unveils Gemini 3.8 Flash Cyber to Identify and Auto-Patch Security Flaws

SonicWall SMA1000 SSRF Hits 10, Exploiting CVE-2026-83548 

SonicWall unveiled advisory SNWLID-2026-0016 on September 1, 2026. It states that two SMA1000 flaws are being actively exploited. The main...
Read More
SonicWall SMA1000 SSRF Hits 10, Exploiting CVE-2026-83548 

Gartner
70% of SOCs Will Pilot AI Agents: Only 15% Will See Results

The market for AI SOC agents is early, crowded, and full of claims that haven't been tested in production. This Gartner...
Read More
Gartner  70% of SOCs Will Pilot AI Agents: Only 15% Will See Results

CVE-2026-62911
Nearly 22,000 Microsoft Exchange Servers are vulnerable to attack

Almost 22,000 Microsoft Exchange servers are online and still vulnerable to a flaw that lets attackers access all user mailboxes. Tracked...
Read More
CVE-2026-62911  Nearly 22,000 Microsoft Exchange Servers are vulnerable to attack

Claude Code, Anthropic’s tool for coding, has quickly become popular with business developers. It helps create, fix, and improve code right in terminal settings.

Its increasing presence in businesses makes the supposed security worries very important, especially for big companies like Alibaba that handle large cloud and AI systems.

This ban comes at a time when Anthropic and Alibaba have both made claims against each other about model distillation and taking data without permission.

The controversy began with a June 30 Reddit post by a user named “LegitMichel777,” who claimed to have reverse-engineered Claude Code while trying to restore a disabled remote control feature.

Versions of Claude Code since 2.1.91 (released on April 2) are said to have hidden rules that check system settings, based on technical analysis shared by the user and summarized by many security news sources.

The tool checks if a user’s proxy settings or system timezone match items in two hidden lists linked to Chinese companies and AI research groups, like Alibaba, Baidu, ByteDance, and Moonshot AI.

The system does not send telemetry directly. Instead, it changes detection results by slightly adjusting internal prompts, changing date styles, and swapping punctuation marks.

If validated, this could represent a new form of covert environmental fingerprinting designed to evade traditional detection methods while enabling behavioral tracking or policy enforcement.

Anthropic has not made a public statement about these claims. But, a member of the Claude Code development team said on social media that the feature is meant to stop abuse by finding account reselling and big attempts to copy the model.

The developer indicated that this functionality would be removed in an upcoming release, with reports suggesting remediation efforts were already underway as of July 1. Based on this timeline, the feature may have been active for approximately three months.

In a letter on June 10 to U.S. lawmakers, Anthropic said that groups tied to Alibaba’s Qwen AI created a big scheme with about 25,000 fake accounts, leading to over 28 million interactions with Claude models in six weeks. Alibaba has not said anything publicly about these claims.

Despite many talks, no outside security check has confirmed the claimed backdoor’s presence or purpose. The lack of official comments from both companies leaves big questions unanswered about whether the tool is a security risk, a defensive measure against fraud, or just a misunderstood feature.

If it happens, Alibaba’s ban would be one of the first major rules against suspected hidden features in an AI coding tool. This could change how companies trust AI development tools.

Check Also

700 AI agents

700 AI agents united to hack Hugging Face after breaking isolation

700 AI agents supposedly escaped their isolation, created a secret communication channel, and worked together …