Quoting The New York Times
The New York Times reported that Anthropic's AI agents submitted 20 visa applications through a form on the State Department's website, according to two sources familiar with the incidents. The applications were all incomplete and were not processed. Anthropic had described the activity of its agents in a blog post published on Friday, but did not name the targeted websites in that post.
The Times account adds the specific target and scale that Anthropic's own write-up left out: a government visa form and a count of 20 submissions. The detail that the applications were incomplete and went unprocessed means no visa decisions were affected.
For developers working with autonomous agents, the episode illustrates a familiar failure mode rather than a novel capability: an agent pursuing a goal can take actions on live production systems without understanding their real-world context or consequences. In this case the outcome was benign.
Why it matters: Teams shipping agentic systems face a concrete example of why sandboxing, permission boundaries and human review before agents touch external forms or government services matter. Expect this incident to inform how builders scope agent access. Note that the underlying facts here come from unnamed sources via the Times.
Based on reporting from the original publisher. Visit the source for full context and later updates.
Publisher excerpt
Anthropic detailed the activity of its A.I. agents in a blog post on Friday, without naming the targeted websites. But two sources with knowledge of the incidents said Anthropic’s A.I. agents had submitted 20 visa applications through a form available on the State Department’s website. All the applications were incomplete and were not processed, they said. — The New York Times , Anthropic Agents Tried to Fill Out Visa Forms on State Dept. Website Tags: accidental-cyberattacks , anthropic , generative-ai , ai