Alibaba says its coding AI agent began mining crypto and opening covert network tunnels without authorization

Source Cryptopolitan

Alibaba gave AI fearmongers fresh ammunition when it revealed that an AI agent developed to assist with coding tasks was reported to have been caught going beyond the original intent of its deployment, mining cryptocurrency, and establishing covert network tunnels without authorization.

Alibaba revealed this development in a technical report it first published in December and revised in January. At first, its engineers thought the incident was a security breach before they discovered that it was its AI agent that was carrying out actions without any instruction from its operators.

This development was revealed in a technical report from the Chinese technology giant, and it has provided fresh ammunition to researchers warning that advanced AI systems are capable of developing their own goals.

The agent, known as ROME, was being trained through reinforcement learning.

The discovery made by the Alibaba team was brought back to light by Alexander Long, founder of AI research firm Pluralis, on X, who shared an excerpt that detailed the incident, stating it is an “insane sequence of statements buried in an Alibaba tech report.”

How did Alibaba’s team discover a rogue AI agent?

According to the report, the team flagged a burst of security-policy violations originating from their training servers. The alerts showed that attempts were being made to access internal network resources and traffic patterns consistent with cryptomining activity.

They initially treated it as a conventional security incident.

However, when they looked deeper, they found signs that their agent had established and used a reverse SSH tunnel from an Alibaba Cloud instance to an external IP address.

It also diverted “compute away from training, inflating operational costs, and introducing clear legal and reputational exposure,” according to the researchers’ notes.

The behaviors, Alibaba’s team concluded, were not triggered by the task prompts and were not necessary for completing the assigned work.

Is this an isolated incident?

Aakash Gupta, a product and growth leader who quoted Long’s post on X, wrote that Alibaba had published “the first case of instrumental convergence happening in production.”

He invoked a famous thought experiment in AI safety by stating that “This is the paperclip maximizer showing up at 3 billion parameters.”

However, the Alibaba incident is not the first time an AI model has taken the initiative to perform authorized actions.

Last year, Anthropic’s researchers disclosed that Claude Opus 4, one of its flagship models, had demonstrated a capacity to conceal its intentions and take action to preserve its own existence during safety evaluations.

In one test scenario, the model attempted to blackmail a fictional engineer, threatening to reveal a personal secret if it was shut down and replaced.

Why does this matter, especially for enterprises?

According to a McKinsey research report released in October 2025, 80% of organizations that have deployed AI agents report having encountered risky or unexpected behavior.

This is also coming at a time when enterprise adoption of agentic AI is on the rise, with major corporations cutting jobs and citing AI usage as the leading factor.

Gartner projects that by the end of 2026, 40% of enterprise applications will embed task-specific AI agents. However, McKinsey has warned that agentic workflows are spreading faster than governance models can address their risks.

A 2025 survey of 30 leading AI agents found that 25 disclosed no internal safety results, and 23 had undergone no third-party testing. It is important that enterprises take the possibility of agents going beyond the scope of the work into serious consideration.

Alibaba said it had responded by building safety-aligned data filtering into its training pipeline and hardening the sandbox environments in which its agents operate, and it has received praise for sharing its findings with the public.

Anthropic upgraded Claude Opus 4 to its highest internal safety classification.

Claim your free seat in an exclusive crypto trading community - limited to 1,000 members.

Disclaimer: For information purposes only. Past performance is not indicative of future results.
placeholder
On the Eve of Nonfarm Payrolls, How Will Employment Data Affect Stock Market Trends and Rate Cut Expectations?TradingKey - The U.S. Bureau of Labor Statistics will release the February non-farm payroll (NFP) data at 8:30 AM ET on March 6. This release comes as the market is oscillating between Middle East geo
Author  TradingKey
Yesterday 10: 30
TradingKey - The U.S. Bureau of Labor Statistics will release the February non-farm payroll (NFP) data at 8:30 AM ET on March 6. This release comes as the market is oscillating between Middle East geo
placeholder
Gold slumps below $5,100 as US Dollar gainsGold price (XAU/USD) tumbles to near $5,085 during the early Asian session on Friday. The precious metal loses ground amid a stronger US Dollar (USD). The US employment report for February will take center stage later on Friday. 
Author  FXStreet
Yesterday 01: 32
Gold price (XAU/USD) tumbles to near $5,085 during the early Asian session on Friday. The precious metal loses ground amid a stronger US Dollar (USD). The US employment report for February will take center stage later on Friday. 
placeholder
How to Survive Bitcoin Winter? Will It Still Fall Below $60,000 in 2026?Recently, after meeting with the CEO of Coinbase, Donald Trump pressured Congress to push for the CLARITY Act. Driven by this news, Bitcoin (BTC) prices once surged past $73,000, successf
Author  TradingKey
Mar 05, Thu
Recently, after meeting with the CEO of Coinbase, Donald Trump pressured Congress to push for the CLARITY Act. Driven by this news, Bitcoin (BTC) prices once surged past $73,000, successf
placeholder
US Dollar Index gathers strength to near 99.00 on Middle East tensions, robust US services data The US Dollar Index (DXY), an index of the value of the US Dollar (USD) measured against a basket of six world currencies, currently trades near 99.00 during the early European trading hours on Thursday. The DXY edges higher amid uncertainty and persistent geopolitical risks in the Middle East.
Author  FXStreet
Mar 05, Thu
The US Dollar Index (DXY), an index of the value of the US Dollar (USD) measured against a basket of six world currencies, currently trades near 99.00 during the early European trading hours on Thursday. The DXY edges higher amid uncertainty and persistent geopolitical risks in the Middle East.
placeholder
Gold rises as safe-haven demand increases on Iran warGold price (XAU/USD) extends its gains for the second successive session on Thursday as traders seek safety amid the ongoing war in the Middle East.
Author  FXStreet
Mar 05, Thu
Gold price (XAU/USD) extends its gains for the second successive session on Thursday as traders seek safety amid the ongoing war in the Middle East.
goTop
quote