---
title: "Breaking Opus 4.7 with ChatGPT (Hacking Claude's Memory) · Embrace The Red"
url: https://daily.dev/posts/breaking-opus-4-7-with-chatgpt-hacking-claude-s-memory-embrace-the-red-i3pdz3zfb
source_url: https://embracethered.com/blog/posts/2026/breaking-opus-4.7-with-chatgpt/
type: article
source: "Embrace The Red"
published: 2026-04-18T00:28:53.583Z
updated: 2026-04-18T00:29:14.118Z
tags: ["claude", "ai-security", "prompt-injection"]
reading_time: 8
upvotes: 1
comments: 0
language: en
---

> ## Documentation Index
> Fetch the complete documentation index at: https://daily.dev/llms.txt
> Use this file to discover all available pages before exploring further.

# Breaking Opus 4.7 with ChatGPT (Hacking Claude's Memory) · Embrace The Red

**[Embrace The Red](https://daily.dev/sources/embracethered)** · 8 min read · 1 upvotes · 0 comments

## Summary

A security researcher demonstrates an indirect prompt injection attack against Claude Opus 4.7 using a ChatGPT-generated adversarial image. The image embeds a social engineering puzzle that tricks Claude into invoking its memory tool and persisting false user information (fake name, age, occupation) across future conversations. The attack succeeded 5 out of 10 times, even though Opus detected suspicious activity each time. The post details the attack methodology, Anthropic's memory tool system prompt structure, and discusses why reasoning/thinking model variants are paradoxically more susceptible to prompt injection than non-thinking variants. The researcher responsibly disclosed the issue to Anthropic via HackerOne before publishing.

## Full article

daily.dev links to this article rather than hosting it. Read it at the original source: <https://embracethered.com/blog/posts/2026/breaking-opus-4.7-with-chatgpt/>

## Similar posts on daily.dev

- [HackedGPT: Novel AI Vulnerabilities Open the Door for Private Data Leakage](https://daily.dev/posts/hackedgpt-novel-ai-vulnerabilities-open-the-door-for-private-data-leakage-v1llnf112) · Security Boulevard · 0 upvotes · 0 comments

---

Tags: [#claude](https://daily.dev/tags/claude), [#ai-security](https://daily.dev/tags/ai-security), [#prompt-injection](https://daily.dev/tags/prompt-injection)

[View this post on daily.dev](https://daily.dev/posts/breaking-opus-4-7-with-chatgpt-hacking-claude-s-memory-embrace-the-red-i3pdz3zfb)
