Anthropic unveils Claude Mythos model, finds thousands of OS vulnerabilities via Project Glasswing
Anthropic has unveiled Claude Mythos, a new AI model designed for cybersecurity that has already discovered thousands of high-severity vulnerabilities in every major operating system and web browser. The model is being distributed as a preview to over 40 organizations and major technology partners including Apple, Google, Microsoft, and Amazon Web Services through Project Glasswing, a coordinated cybersecurity initiative.
Anthropic Unveils Claude Mythos Model, Discovers Thousands of Critical Vulnerabilities
Anthropric has announced Claude Mythos, a specialized AI model designed for cybersecurity vulnerability discovery, alongside Project Glasswing—a multi-organization initiative to secure critical software infrastructure. The model has already identified thousands of high-severity vulnerabilities across every major operating system and web browser, some of which survived decades of human review and millions of automated security tests.
Project Glasswing Partnership
Project Glasswing brings together 12 founding technology companies and organizations: Amazon Web Services, Anthropic, Apple, Broadcom, Cisco, CrowdStrike, Google, JPMorganChase, the Linux Foundation, Microsoft, NVIDIA, and Palo Alto Networks. An additional 40+ organizations that develop or maintain critical software have access to the Claude Mythos Preview model.
The initiative's stated goal is to identify and remediate security vulnerabilities before broader deployment, acknowledging that AI-powered vulnerability discovery capabilities will proliferate among actors—not all of whom may deploy them safely.
Capabilities and Performance
Claude Mythos demonstrates improvements over Anthropic's Claude Opus 4.6 in reasoning, agentic search, computer use, and notably agentic coding. One example Anthropic provided involved discovering and chaining together a Linux kernel vulnerability that could enable complete machine compromise.
Anthropic's system card indicates the model shows measurable gains in vulnerability detection compared to prior generations, though specific benchmark scores were not disclosed in the announcement. The model's ability to identify flaws that persisted through extensive human and automated review suggests substantially improved detection capabilities.
Availability and Future Plans
Anthropic explicitly stated it does not plan to make Claude Mythos Preview generally available to the public. However, the company indicated its "eventual goal is to enable our users to safely deploy Mythos-class models at scale—for cybersecurity purposes, but also for the myriad other benefits that such highly capable models will bring."
This suggests a phased approach: controlled preview access to vetted organizations now, with broader availability contingent on developing safety protocols for deployment at scale.
What This Means
Anthropic is deploying its most capable model not for general use but specifically for defensive security purposes—positioning itself as a leader in AI safety through controlled capability release. The coordinated Project Glasswing approach represents an acknowledgment that frontier AI capabilities for vulnerability discovery are inevitable, and that proactive coordination among major technology companies is necessary to ensure such tools are deployed defensively before they proliferate to less responsible actors.
For organizations in the preview program, access to Mythos provides immediate security benefits. For the broader industry, Project Glasswing sets a precedent for how companies might manage the release of potentially dual-use AI capabilities.
Related Articles
Anthropic adds Mods to Claude Code, a plugin system that hooks into tool calls, prompts and UI rendering
Anthropic released Mods for Claude Code, a plugin system built on JavaScript and TypeScript functions that hook into events such as tool calls, user prompts and UI rendering. Mods are not sandboxed and run with the user's permissions. They work in the CLI, the desktop app and, partly, the VS Code extension.
Graphite: Opus 5.5 uses 'this matters' 116x more than humans as AI writing tells persist
Marketing firm Graphite identified 13,000 phrases that appear at least twice as often in AI-generated writing as in human writing. Claude Opus 5.5 uses "this matters" 116 times more than humans, while OpenAI's Astra favors "corrective framing" more than 100 times as often. Em-dash use has collapsed across frontier models, but total tells are holding steady, according to Graphite.
Anthropic launches Claude for Government for US civilian agencies in FedRAMP High environment
Anthropic is now offering Claude for Government to US federal and state agencies. The platform has been in open beta since July and runs in a FedRAMP High environment. The launch comes as the company's legal fight with the Pentagon continues.
Google launches Gemini 4 Argon at $2/$10 per 1M tokens, rolling out first to Fairwind cybersecurity partners
Google has launched Gemini 4 Argon, the first model in the Gemini 4 family, at an introductory $2 per million input tokens and $10 per million output tokens. Artificial Analysis says it matches GPT-6 Astra on its Intelligence Index at 60% of the cost per task, with a 15% hallucination rate. Access starts with Google's Fairwind Program for governments and trusted partners.
Comments
Loading...