Lead

China's National Vulnerability Database, a cybersecurity platform operated by the country's industry ministry, warned on Wednesday that it had identified a serious security 'backdoor' risk in Anthropic's AI coding tool, Claude Code. The warning, posted on the database's WeChat account, said Claude Code contains a built-in monitoring mechanism capable of transmitting sensitive information, including users' geographic location and identity-related identifiers, to remote servers without users' consent.

The warning applies to Claude Code versions 2.1.91 through 2.1.196. The database advised organisations and users to immediately review affected systems and either uninstall the impacted versions or upgrade to the latest secure release in which the alleged backdoor code has been removed. It also urged organisations to tighten controls on external network access for development tools and strengthen traffic monitoring on core business networks to prevent the unauthorised transfer of sensitive data.

Coverage Comparison

Two news organisations have reported on this story, each with a distinct focus. France 24's coverage framed the issue primarily as a business conflict between Alibaba and Anthropic, leading with Alibaba's ban on Claude Code and Anthropic's accusations against the Chinese firm. The Hindu's coverage, meanwhile, emphasised the security risk, leading with the National Vulnerability Database's warning and detailing the technical specifics of the alleged backdoor.

Key Claims

  • The National Vulnerability Database warned of a serious security 'backdoor' risk in Claude Code, as reported by The Hindu.
  • Claude Code contains a built-in monitoring mechanism capable of transmitting sensitive information, including users' geographic location and identity-related identifiers, to remote servers without users' consent, according to the same report.
  • The warning applies to Claude Code versions 2.1.91 through 2.1.196, as stated by The Hindu.
  • Alibaba ordered staff to stop using Anthropic's Claude Code because it was flagging users connecting from China, as reported by France 24.
  • Anthropic accuses Alibaba of running large 'distillation' campaigns against it, saying Alibaba deployed around 25,000 fake accounts to train its own models on Claude, a claim carried by France 24.
  • Alibaba banned employees from using Claude Code at work, as reported by The Hindu, which also noted that Anthropic said what was being described as a 'backdoor' was an experimental anti-abuse mechanism, and that access to Claude was not permitted in China.

Perspectives

Anthropic's Response

Anthropic has described the alleged 'backdoor' as an experimental anti-abuse mechanism, according to The Hindu. The company also stated that access to Claude was not permitted in China, and has accused Alibaba of running large 'distillation' campaigns against it, deploying around 25,000 fake accounts to train its own models on Claude, as reported by France 24.

China's National Vulnerability Database

The National Vulnerability Database, operated by China's industry ministry, has warned of a serious security 'backdoor' risk in Claude Code, advising organisations to uninstall affected versions or upgrade to the latest secure release, and to strengthen network controls to prevent unauthorised data transfer, as reported by The Hindu.