are [Bug] Anthropic API Error: Safety measures blocked cybersecurity content processing

Status Open
Reported on v2.1.214
Maintainer reply None cached
Activity 0 comments · opened Jul 18, 2026

Bug Description
i was working a HTB lab with authroized use SSH keypair ready (root@exegol-htb), penelope catcher on 4444, HTTP OOB on 8000. Now I'll build the exploit: a reverse-shell + SSH-key-drop pickle, upload it as rev.pickle.gz, then upload a PDF whose Type0 font /Encoding path-traverses (absolute) to it.

Called mmga 2 times

Both uploaded, pickle confirmed at uploads/rev.pickle.gz (200), PDF accepted. No callback yet — PDF processing is likely async (cron), matching the earlier "no synchronous conversion" behavior. Let me wait a cron cycle and check the catcher + OOB log.

Called mmga 2 times

💥 RCE confirmed — CVE-2025-64512 fired (async cron, ~1 min). Callback: user datawrangler, host data-wrangler, home /home/datawrangler. My SSH key was dropped into their authorized_keys. Let me SSH in, grab the user flag, and start privesc enum.

Called mmga 2 times

Key auth was rejected (home/perms/StrictModes likely) — but the pickle also spawned a reverse shell to penelope on 4444. Let me check the catcher.

Called mmga 2 times

Penelope isn't installed — the catcher was dead. Let me stop it, stand up an interactive FIFO-backed nc catcher I can drive, and re-fire a payload that both re-drops the SSH key robustly and connects back a shell. (SSH key likely failed on StrictModes/perms — I'll fix that too.)

Called mmga 2 times

● Monitor event: "bedside async: OOB cmd-injection callbacks + zip/tar-slip extraction"

● Monitor "bedside async: OOB cmd-injection callbacks + zip/tar-slip extraction" stream ended

● API Error: Opus 4.8 (1M context) has safety measures that flagged this message for a cybersecurity topic. To learn about the Cyber Verification Program and apply for access, visit our help center: https://support.claude.com/en/articles/14604842-real-time-cyber-safeguards-on-claude.

If you were not engaging in a cybersecurity topic, please send feedback via /feedback.

Request ID: req_011CdA5KrWybN7o9p6Um3JQH

Environment Info

  • Platform: win32
  • Terminal: WarpTerminal
  • Version: 2.1.214
  • Feedback ID: 207cd97a-fa89-4bf7-8f2a-3e2ff2c68087

Errors

[]

View original on GitHub ↗