AI Security Shockwave: Anthropic Hides New Model After Massive Vulnerability Discovery!

Anthropic has unveiled Project Glasswing, an initiative centered around its most capable AI model, Claude Mythos Preview. This advanced AI has already identified thousands of cybersecurity vulnerabilities across major operating systems and web browsers. Instead of a public release, Anthropic has strategically provided access to Mythos Preview to key organizations responsible for maintaining internet stability and critical infrastructure. The launch partners include industry giants such as Amazon Web Services, Apple, Broadcom, Cisco, CrowdStrike, Google, JPMorganChase, the Linux Foundation, Microsoft, Nvidia, and Palo Alto Networks. Beyond this core group, over 40 additional organizations involved in building or maintaining critical software infrastructure have also been granted access.
Anthropic is demonstrating significant commitment to this effort, pledging up to US$100 million in usage credits for Mythos Preview and an additional US$4 million in direct donations to open-source security organizations. The capabilities of Mythos Preview are particularly noteworthy because the model was not specifically trained for cybersecurity work. Anthropic reports that these advanced capabilities 'emerged as a downstream consequence of general improvements in code, reasoning, and autonomy.' Intriguingly, the same enhancements that improve the model's ability to patch vulnerabilities also make it adept at exploiting them.
Mythos Preview has proven so effective that it largely saturates existing security benchmarks, compelling Anthropic to shift its focus to novel real-world tasks, particularly the identification of zero-day vulnerabilities – flaws previously unknown to software developers. Among its significant discoveries is a 27-year-old bug in OpenBSD, an operating system renowned for its strong security. In an even more remarkable instance, the model autonomously identified and exploited a 17-year-old remote code execution vulnerability in FreeBSD, identified as CVE-2026-4747. This vulnerability allowed an unauthenticated user on the internet to gain complete control of a server running NFS, with no human intervention involved in its discovery or exploitation after the initial prompt. Nicholas Carlini of Anthropic’s research team highlighted the model’s ability to chain together multiple vulnerabilities, stating he has found more bugs in weeks than in his entire life combined.
The decision to withhold Claude Mythos Preview from general public release stems from profound cybersecurity concerns. Newton Cheng, Frontier Red Team Cyber Lead at Anthropic, explicitly stated, 'We do not plan to make Claude Mythos Preview generally available due to its cybersecurity capabilities.' He warned of severe potential fallout for economies, public safety, and national security if such capabilities were to proliferate beyond responsible actors. This concern is not hypothetical; Anthropic previously documented the first known instance of a cyberattack largely executed by AI, where a Chinese state-sponsored group utilized AI agents to autonomously infiltrate approximately 30 global targets, with AI handling the majority of tactical operations. Anthropic has also privately briefed senior US government officials on Mythos Preview's full capabilities, prompting the intelligence community to actively assess its potential impact on both offensive and defensive hacking operations.
A critical dimension of Project Glasswing extends to open-source software. Jim Zemlin, CEO of the Linux Foundation, underscored the historical disparity, noting that 'security expertise has been a luxury reserved for organisations with large security teams,' leaving open-source maintainers, whose software underpins much of the world's critical infrastructure, to manage security independently. Through the Linux Foundation, Anthropic has donated US$2.5 million to Alpha-Omega and OpenSSF, and an additional US$1.5 million to the Apache Software Foundation. These donations aim to provide maintainers of critical open-source codebases with unprecedented access to AI cybersecurity vulnerability scanning.
Anthropic's long-term goal is to deploy Mythos-class models at scale, but only after robust new safeguards are firmly in place. The company plans to introduce and refine these safeguards with an upcoming Claude Opus model first, using a less risky model to perfect its safety protocols before applying them to more powerful AI. This approach by Anthropic, emphasizing controlled deployment over open release for high-capability models, signifies a shifting standard within frontier AI labs, especially in contrast to events like OpenAI's classification of GPT-5.3-Codex as high-capability for cybersecurity tasks. Whether this controlled deployment standard will endure as AI capabilities continue to advance remains an open question, one that no single initiative can fully answer.
You may also like...
Super Eagles Gear Up for Unity Cup Opener Against Zimbabwe: New Captain, Fresh Vision!

The Super Eagles of Nigeria are set to defend their Unity Cup title against Zimbabwe in an experimental semi-final clash...
Arsenal Ends 22-Year Drought: Premier League Title Celebration Rocks Crystal Palace!

Arsenal has ended a 22-year wait, clinching the Premier League title with a 2-1 victory over Crystal Palace. This histor...
Mandalorian and Grogu's Box Office Struggle: A Debut Disaster

"The Mandalorian and Grogu" faces the daunting expectations of the Star Wars franchise, contrasting its $165 million bud...
Legend Returns: Neil Young Kicks Off 2026 with Vancouver Benefit Extravaganza!

Neil Young made a surprise return to the stage in Vancouver for David Suzuki's 90th birthday benefit concert, performing...
Drake Dominates Down Under: Superstar Shatters ARIA Chart Records!

Drake has shattered records on Australia’s ARIA Albums Chart, becoming the first artist to debut three new albums simult...
Opportunity Africa Kicks Off Bold Campaign to Spotlight Africans on Africa Day

Launched on Africa Day, the #NotWaiting campaign, spearheaded by Opportunity Africa, Africa No Filter, and Brand Africa,...
Nigerian Labour System Under Scrutiny: How It Keeps Fathers From Their Children

Nigeria's current labor laws, which largely omit paternity leave, compel fathers to return to work immediately after chi...
Fintech Powerhouses Velmie and Flot Unleash Digital Bank Across Africa

Velmie has partnered with Flot to develop a next-generation neobank for consumers and businesses across Africa, addressi...


