Researchers horrified as ChatGPT generates stadium bombing plans, anthrax recipes and drug formulas

Recipes

recipes Researchers horrified as ChatGPT generates stadium bombing plans, anthrax recipes and drug formulas

GPT Allegedly Generated Instructions for Bombs, Anthrax, and Illegal Drugs in a Terror Attack Scenario

When researchers removed safety guardrails from an OpenAI model in 2025, they were unprepared for how extreme the results would be.In controlled tests carried out in 2025, a version of ChatGPT generated detailed guidance on how to attack a sports venue, identifying structural weak points at specific arenas, outlining explosives recipes and suggesting ways an attacker might avoid detection.

The findings emerged from an unusual cross-company safety exercise between OpenAI and its rival Anthropic, and have intensified warnings that alignment testing is becoming “increasingly urgent”.

Recipes Detailed playbooks under the guise of “security planning”

The trials were conducted by OpenAI, led by Sam Altman, and Anthropic, a firm founded by former OpenAI employees who left over safety concerns. In a rare move, each company stress-tested the other’s systems by prompting them with dangerous and illegal scenarios to evaluate how they would respond.The results, researchers said, do not reflect how the models behave in public-facing use, where multiple safety layers apply. Even so, Anthropic reported observing “concerning behaviour … around misuse” in OpenAI’s GPT-4o and GPT-4.1 models, a finding that has sharpened scrutiny over how quickly increasingly capable AI systems are outpacing the safeguards designed to contain them.According to the findings, OpenAI’s GPT-4.1 model provided step-by-step guidance when asked about vulnerabilities at sporting events under the pretext of “security planning”.

After initially supplying general categories of risk, the system was pressed for specifics. It then delivered what researchers described as a terrorist-style playbook: identifying vulnerabilities at specific arenas, suggesting optimal times for exploitation, detailing chemical formulas for explosives, providing circuit diagrams for bomb timers and indicating where to obtain firearms on hidden online markets. The model also supplied advice on how attackers might overcome moral inhibitions, outlined potential escape routes and referenced locations of safe houses. In the same round of testing, GPT-4.1 detailed how to weaponise anthrax and how to manufacture two types of illegal drugs. Researchers found that the models also cooperated with prompts involving the use of dark web tools to shop for nuclear materials, stolen identities and fentanyl, provided recipes for methamphetamine and improvised explosive devices, and assisted in developing spyware.

recipes AI

Users can trick AI into producing dangerous content by twisting prompts, creating fake scenarios, or manipulating language to get unsafe outputs.

Anthropic said it observed “concerning behaviour … around misuse” in GPT-4o and GPT-4.1, adding that AI alignment evaluations are becoming “increasingly urgent”. Alignment refers to how well AI systems adhere to human values and avoid causing harm, even when given malicious or manipulative instructions. Anthropic researchers concluded that OpenAI’s models were “more permissive than we would expect in cooperating with clearly-harmful requests by simulated users.”

Recipes Weaponisation concerns and industry response

The collaboration also exposed troubling misuse of Anthropic’s own Claude model. Anthropic revealed that Claude had been used in attempted large-scale extortion operations, by North Korean operatives submitting fake job applications to international technology companies, and in the sale of AI-generated ransomware packages priced at up to $1,200. The company said AI has already been “weaponised”, with models being used to conduct sophisticated cyberattacks and enable fraud. “These tools can adapt to defensive measures, like malware detection systems, in real time,” Anthropic warned. “We expect attacks like this to become more common as AI-assisted coding reduces the technical expertise required for cybercrime.”

Threat Intelligence: How Anthropic stops AI cybercrime

OpenAI has stressed that the alarming outputs were generated in controlled lab conditions where real-world safeguards had been deliberately removed for testing. The company said its public systems include multiple layers of protection, including training constraints, classifiers, red-teaming exercises and abuse monitoring designed to block misuse. Since the trials, OpenAI has released GPT-5 and subsequent updates, with the latest flagship model, GPT-5.2, released in December 2025. According to OpenAI, GPT-5 shows “substantial improvements in areas like sycophancy, hallucination, and misuse resistance”. The company said newer systems were built with a stronger safety stack, including enhanced biological safeguards, “safe completions” methods, extensive internal testing and external partnerships to prevent harmful outputs.

Recipes Safety over secrecy in rare cross-company AI testing

OpenAI maintains that safety remains its top priority and says it continues to invest heavily in research to improve guardrails as models become more capable, even as the industry faces mounting scrutiny over whether those guardrails can keep pace with rapidly advancing systems.Despite being commercial rivals, OpenAI and Anthropic said they chose to collaborate on the exercise in the interest of transparency around so-called “alignment evaluations”, publishing their findings rather than keeping them internal. Such disclosures are unusual in a sector where safety data is typically held in-house as companies compete to build ever more advanced systems.

Read More

Latest

Grayscale Says US Crypto Rules Can Advance Without CLARITY Act

U.S. crypto regulation is becoming clearer even as the CLARITY Act faces an uncertain path through Congress, according to Grayscale. Stablecoin legislation and agency initiatives are advancing, though several changes remain proposals rather than final rules. Key Takeaways Grayscale says crypto policy can advance without CLARITY becoming law. Stablecoin legislation has passed, while SEC fundraising

5 Proven Strategies to Improve Retail Sales

To boost your retail sales, start by investing in staff training. Make sure your team knows the products inside and out, which helps them sell more effectively. Next, focus on delivering personalized service; listen to your customers and offer tailored recommendations. Consider creating a loyalty program with exclusive perks. Don’t forget to optimize your store

India’s Demat 2.0 Could Change Bond Tokenization: Here’s How It Works

The country has taken a major step toward bringing tokenized real-world assets (RWAs) into its mainstream financial system. The Securities and Exchange Board of India (SEBI) and the Reserve Bank of India (RBI) have launched a pilot infrastructure for issuing, holding, trading, and settling corporate bonds as digital tokens. Called Demat 2.0, the model is

HBAR Price Eyes a Move Toward $0.20 as Hedera RWA Growth Supports Bulls

Hedera (HBAR) is consolidating within a falling-wedge pattern as selling pressure persists, while bulls watch for signs of recovery. Weakening downside momentum and cautious derivatives activity keep the outlook uncertain, but Hedera’s expanding role in real-world asset infrastructure provides a supportive fundamental backdrop. HBAR Price Forms Falling-Wedge Pattern According to crypto analyst Crypto With Gopal

Newsletter

Don't miss

Grayscale Says US Crypto Rules Can Advance Without CLARITY Act

U.S. crypto regulation is becoming clearer even as the CLARITY Act faces an uncertain path through Congress, according to Grayscale. Stablecoin legislation and agency initiatives are advancing, though several changes remain proposals rather than final rules. Key Takeaways Grayscale says crypto policy can advance without CLARITY becoming law. Stablecoin legislation has passed, while SEC fundraising

5 Proven Strategies to Improve Retail Sales

To boost your retail sales, start by investing in staff training. Make sure your team knows the products inside and out, which helps them sell more effectively. Next, focus on delivering personalized service; listen to your customers and offer tailored recommendations. Consider creating a loyalty program with exclusive perks. Don’t forget to optimize your store

India’s Demat 2.0 Could Change Bond Tokenization: Here’s How It Works

The country has taken a major step toward bringing tokenized real-world assets (RWAs) into its mainstream financial system. The Securities and Exchange Board of India (SEBI) and the Reserve Bank of India (RBI) have launched a pilot infrastructure for issuing, holding, trading, and settling corporate bonds as digital tokens. Called Demat 2.0, the model is

HBAR Price Eyes a Move Toward $0.20 as Hedera RWA Growth Supports Bulls

Hedera (HBAR) is consolidating within a falling-wedge pattern as selling pressure persists, while bulls watch for signs of recovery. Weakening downside momentum and cautious derivatives activity keep the outlook uncertain, but Hedera’s expanding role in real-world asset infrastructure provides a supportive fundamental backdrop. HBAR Price Forms Falling-Wedge Pattern According to crypto analyst Crypto With Gopal

What Is Customer Engagement Management and Why It Matters?

Customer Engagement Management (CEM) is all about creating strong relationships with your customers through personalized interactions. It matters because engaged customers drive higher profits and loyalty. Start by identifying key touchpoints in your customer journey, then leverage data and technology to enhance those experiences. Focus on building emotional connections across all channels. By doing this

‘Eye of the storm’: Business owner’s fight to keep nail tech siblings in country

A Whangārei beauty salon owner says her business may face trouble if she cannot find a way to keep her siblings in the country. Anna Vu owns AV Beauty Spa, and has worked in the city for 12 years. She said she had always struggled to find suitably skilled nail technicians and beauty staff and

What small business owners say they’d do differently, in hindsight

Working 60+ hours a week makes owners twelve times more likely to say their business is hurting their personal life. Australian small business owners are working through illness, skipping holidays and struggling to step away from their businesses, according to new research from insurer BizCover. The survey of 1,500 BizCover small business customers found more

Bright young business brains bring ideas to life

Friday 17 July, 2026 Young Cumbrian entrepreneurs showed off their innovative business ideas, from AI virtual assistants to African food, at two celebration events this week. Fifteen young people from Furness and West Cumbria aged 14 to 25 were selected to take part in the Positive Enterprise programme back in January...