Lead

China's cybersecurity platform, the National Vulnerability Database (NVDB), issued a warning on Wednesday about a security "backdoor" in Anthropic's AI coding tool, Claude Code. The database, affiliated with the Ministry of Industry and Information Technology (MIIT), advised affected users to immediately uninstall or upgrade to a secure version. Anthropic responded by stating that users in China were not supposed to be using the product in the first place, in a statement that came amid escalating US-China AI tensions.

Coverage Comparison

Dawn and the South China Morning Post both reported on the warning and Anthropic's response. Dawn emphasized the security warning, framing it as a "security backdoor" that could transmit sensitive information without consent. The South China Morning Post highlighted the US-China AI race angle, noting Anthropic's statement that Chinese users were not intended to use Claude Code and providing details on affected versions.

Both outlets reported the NVDB's recommendation for comprehensive checks and uninstall or upgrade, and noted that Anthropic blocks users and companies in China from accessing its products, though use may still occur via VPN or proxy services. The South China Morning Post additionally reported that Anthropic confirmed embedding hidden code to track user locations, a detail not mentioned in Dawn's coverage.

Key Claims

  • Security Warning: China's NVDB warned that Claude Code contains a security backdoor, posing a "severe threat" and potentially transmitting sensitive information, including user locations and identity-related identifiers, to remote servers without consent.
  • Affected Versions: The warning applies to Claude Code versions 2.1.91 to 2.1.196, which were released from April to late June. Newer versions have since been released.
  • Recommendations: The NVDB advised affected developers to immediately uninstall or upgrade to the latest secure version that has removed the backdoor code, and to strengthen control over external access permissions to prevent unauthorized transmission of sensitive data.
  • Anthropic's Response: Anthropic stated that users in China were not supposed to be using Claude Code, as the company blocks access from China and other adversarial nations. The company also confirmed last week that it had embedded hidden code to track user locations to stop illicit "distillation" of its models.
  • Alibaba's Ban: Chinese tech giant Alibaba reportedly told employees last week that the use of Claude Code would be banned from July 10 due to security concerns, according to people familiar with the matter. Anthropic has previously accused Alibaba of reverse-engineering its AI models in a process known as "distillation."