model releaseAnthropic

Anthropic restricts Claude Mythos access, exposing Europe's lack of AI safety infrastructure

TL;DR

Anthropic is restricting access to Claude Mythos Preview, a model the company claims can find security vulnerabilities better than most humans, to 52 technology partners. While the UK's AI Security Institute has already tested Mythos and published findings, most European cybersecurity agencies have limited or no access, revealing a structural gap in Europe's AI safety evaluation capacity.

3 min read
0

Anthropic restricts Claude Mythos Preview to select partners

Anthropic announced it will limit access to Claude Mythos Preview to a select group of technology partners, citing unprecedented cybersecurity risks. Under a program called "Project Glasswing," the company granted access to 12 US tech companies including Apple, Microsoft, and Amazon, plus 40 additional unnamed organizations.

The company claims the model can find security vulnerabilities better than most humans and could increase the likelihood of large-scale AI-powered cyberattacks.

Europe's limited visibility into the model

According to POLITICO, officials from eight national European cybersecurity agencies reported minimal contact with Anthropic regarding Mythos. Only Germany's BSI confirmed opening talks with Anthropic without receiving direct testing access. BSI chief Claudia Plattner called it an urgent question whether such tools would become available on the open market, with profound implications for national and European security.

The EU's cybersecurity agency ENISA declined to comment on whether it is in contact with Anthropic. The EU Commission's AI Office maintains dialogue with Anthropic as part of the EU Code of Practice for AI models, but whether Mythos is part of those conversations or whether the office has received access remains unanswered.

UK's AISI already tested and assessed the model

The UK's AI Security Institute (AISI) tested Mythos and published its assessment on Monday. UK AI Minister Kanishka Narayan confirmed the institute had taken action based on its findings.

According to the AISI assessment, "Mythos Preview represents a significant leap over previous frontier models in a landscape where cyber capabilities were already advancing rapidly." The institute noted it couldn't confirm with certainty whether Mythos could successfully attack well-defended systems.

Structural gap in European AI safety capacity

The UK's AISI, founded in 2023 with 100 million pounds in public funding, employs more than 100 technical staff and has tested at least 16 models, including three frontier models before public launch. It has recruited high-profile researchers from OpenAI and Google DeepMind.

The EU AI Office has more than 125 staff but faced major hiring difficulties as recently as fall 2024, according to Transformer News. Rigid pay structures limit its ability to attract private-sector talent, with hiring processes dragging on for months. Individual EU member states have built parallel structures: France launched INESIA in early 2025, and Spain monitors AI deployment through AESIA.

Industry and expert reactions

Daniel Privitera, founder of Berlin-based AI nonprofit KIRA, told POLITICO that "Mythos offers an early taste of how critical access to frontier AI capabilities will be in the years ahead. Europe currently has no plan for securing that access."

AI pioneer Yoshua Bengio called it "deeply concerning that tech companies, not regulators, are deciding how to handle these risks." Former European Parliament member Marietje Schaake, who helped shape the EU's Code of Practice for AI developers, said "now would be a good time to agree on disclosure rules and oversight mechanisms."

Regulatory implications

Under the EU AI Act, providers like Anthropic must address cyber risks posed by their models. The Cyber Resilience Act sets mandatory cybersecurity requirements for products with digital components sold in the EU market.

According to EU guidelines, internal use of an AI model counts as placing it on the market if that use is essential to providing a product or service in the EU. EU Commission digital spokesperson Thomas Regnier said the Commission is examining possible implications under EU legislation.

What this means

The Mythos situation reveals that Europe's AI safety challenge isn't primarily about regulation—Anthropic signed the EU Code of Practice along with other major AI companies. The core problem is Europe's lack of technical infrastructure and talent to conduct independent safety evaluations at the frontier level. The UK's AISI demonstrates what's possible with focused funding, competitive salaries, and streamlined hiring, giving it credibility to secure early access. Europe's fragmented approach—with the underfunded EU AI Office and separate national institutes—leaves the region unable to assess cutting-edge models that could pose cybersecurity risks. This structural weakness becomes more critical as AI capabilities advance and potentially adversarial actors like DeepSeek enter the frontier model space.

Related Articles

funding

Anthropic raises $65B at $965B valuation, releases Claude Opus 4.8, plans wider Mythos rollout

Anthropic closed a $65 billion Series H at a $965 billion valuation, making it the most valuable AI startup globally and surpassing OpenAI's $852 billion March valuation. The company simultaneously released Claude Opus 4.8 and announced plans to bring its Mythos cyber-focused model to all customers within weeks.

model release

Anthropic's Opus 4.8 matches Claude Mythos Preview in alignment, cuts thinking mode costs by 67%

Anthropic released Claude Opus 4.8 on May 28, 2026, replacing Opus 4.7 at unchanged pricing. The company claims the model's misalignment rates match those of Claude Mythos Preview, the experimental model deemed too dangerous for public release in April 2026. Opus 4.8 delivers faster thinking modes at one-third the cost of version 4.7.

model release

Anthropic releases Claude Opus 4.8 with improved agentic coding and reasoning benchmarks

Anthropic released Claude Opus 4.8 on May 28, 2026, with improved performance in agentic coding, computer use, and reasoning benchmarks. Pricing remains at $5 per million input tokens and $25 per million output tokens, while the model's fast mode is now three times cheaper than previous versions.

model release

Anthropic's Claude Opus 4.8 launches on AWS Bedrock in four regions

Anthropic's Claude Opus 4.8 is now available on Amazon Bedrock and Claude Platform on AWS. The model is designed for autonomous multi-stage tasks, agentic coding, and long-running workflows with reduced supervision.

Comments

Loading...