Anthropic and OpenAI Launch Cybersecurity AI Models, Reshaping Cyber Defense
Cybersecurity has traditionally relied on researchers to manually find vulnerabilities, validate risks and develop patches. Generative AI can now turn detection, reverse engineering and even exploitation into an automated workflow. Anthropic’s Claude Mythos is geared toward extended autonomous exploration, while OpenAI’s GPT-5.4-Cyber focuses on assisting defenders through trusted programs. Both approaches are driving a structural shift in the speed and scale of cyber offense and defense.
Anthropic unveiled Claude Mythos Preview on April 7, 2026. In Firefox vulnerability testing, it produced 181 working exploits and achieved 10 full control-flow hijacks across roughly 7,000 program entry points. OpenAI followed on April 14 with GPT-5.4-Cyber, making TAC available to thousands of verified individuals and hundreds of defensive teams. Neither company disclosed pricing.
All Coverage
1 original reportsThe Backstory
The history behind this eventAnthropic Faces Double-Standard Backlash as Most Powerful AI Model Mythos 5 Is Restricted to US Government Use
Anthropic has positioned Claude Mythos 5 as its most powerful cybersecurity model, making its capabilities and access controls consequential for critical infrastructure protection and AI governance. With the public-facing Fable 5 still blocked, the gap between government and civilian access to advanced models has fueled controversy over technological monopolies and double standards.
Anthropic recently announced that Mythos 5 had been cleared to come back online, but only for certain US critical infrastructure organizations, with no access for the general public. Fable 5 remains blocked. Anthropic did not disclose the exact announcement date, the number of authorized organizations or any financial amounts involved, prompting criticism from the online and open-source communities that it is using AI risks to entrench national and technological advantages.
Anthropic’s Claude Mythos Release Raises Security Concerns in Crypto Community
Anthropic has introduced Claude Mythos, also known as Fable 5, touting stronger code-analysis and vulnerability-detection capabilities. Such models can help defenders patch smart contracts but may also lower the technical barriers to launching cyberattacks, fueling concerns in the crypto community about the security of assets and protocols.
Anthropic said the new model includes general-purpose safety safeguards and routes cybersecurity-related queries to a specialized model to reduce the risk of misuse. The Uniswap founder, however, criticized the design of its “safety filter” as poorly calibrated. Related reports did not disclose the exact release date, any losses or the value of assets affected.
Anthropic Targets Japan’s Cybersecurity Market With Claude Mythos
Anthropic is targeting Japan’s cybersecurity market with its next-generation AI model Claude Mythos, focusing on vulnerability detection and pursuing Japanese government agencies and financial institutions. The strategy raises questions about cross-border reliance on critical computing power and cybersecurity capabilities. It has also drawn the U.S. government’s attention to computing sovereignty, prompting Japan to accelerate development of advanced domestic cybersecurity models.
As of July 20, 2026, the latest reports indicate that Anthropic is aggressively positioning itself in Japan’s government and financial markets, with Claude Mythos’s vulnerability-detection capabilities emerging as a key competitive focus. The Japanese government and industry are simultaneously advancing the development of sovereign models. Available information does not disclose the model’s release date, investment amount, procurement scale or any formal partner institutions.
Anthropic Flagship AI Model Claude Mythos Leaked, Raising Cybersecurity Concerns
Anthropic is developing its flagship Claude Mythos model with advanced coding, reasoning and autonomous cybersecurity capabilities. Its ability to rapidly chain vulnerabilities together could lower the barrier to cyberattacks, making the leak more than a product-secrecy issue. It also raises concerns about zero-day exploitation, responsible disclosure mechanisms and the defense of critical infrastructure worldwide.
As of July 19, 2026, Anthropic was investigating unauthorized access caused by a system configuration error. Reports said vulnerabilities could be attacked within as little as four hours of disclosure. The company is not making Mythos broadly available for now, instead prioritizing trials by cyber defense organizations and addressing risks through its Glasswing program and threat-intelligence sharing.
OpenAI Launches GPT-5.5-Cyber Security Model to Compete With Anthropic
OpenAI and Anthropic are extending their generative AI rivalry into cybersecurity. Security models can help identify high-risk vulnerabilities, analyze attack paths and accelerate remediation, but they also carry dual-use risks. Ensuring that critical infrastructure operators can safely access advanced models has therefore become a key issue for the U.S. government and industry.
As of July 19, 2026, OpenAI had unveiled its Daybreak cyber defense initiative, combining GPT-5.5-Cyber with Codex Security in a three-tier architecture focused on four core vulnerability-detection capabilities. Through a “trusted access mechanism” developed with government agencies, the company will give priority access to critical infrastructure defenders, putting it in direct competition with Anthropic's Mythos model.
Anthropic, EU Officials Discuss Cybersecurity Concerns Over Mythos AI Model
Anthropic’s Mythos AI model is positioned as a system with advanced cybersecurity capabilities. But its powerful offensive and defensive tools could also be misused, drawing scrutiny from the European Commission and financial regulators. Anthropic has pledged to comply with the EU’s AI Code of Practice, assess the model’s risks and take steps to mitigate them.
EU officials have now met with Anthropic for a briefing on cybersecurity concerns surrounding Mythos, while euro-area finance ministers have separately raised requirements concerning bank access. Available information does not disclose the exact date of the meeting, the number of banks affected or any transaction amounts. Attention will now turn to access permissions and risk-control standards.
OpenAI Expands Cybersecurity Program, Launches Defensive Model GPT-5.4-Cyber
OpenAI launched Trusted Access for Cyber (TAC) on February 5, 2026, and pledged $10 million in API credits through its Cybersecurity Grant Program. Because frontier models can both identify vulnerabilities and enable attacks, TAC provides tiered access based on identity and trust verification, aiming to give defenders priority access to its capabilities while reducing the risk of misuse.
OpenAI launched GPT-5.4-Cyber on April 14, expanding TAC to thousands of verified defenders and hundreds of teams safeguarding critical software. The highest tier provides access to the model, which lowers refusal thresholds for legitimate cybersecurity work and supports binary reverse engineering. On April 21, the company demonstrated it to about 50 U.S. federal cybersecurity personnel in Washington and began outreach to the Five Eyes alliance.
Anthropic Plans to Offer Mythos AI Model to British Banks to Bolster Cyber Defenses
Anthropic plans to offer its Mythos AI model to British banks as part of an expansion of “Project Glasswing.” Mythos is designed to identify vulnerabilities in cyber defenses, helping financial institutions uncover attack surfaces earlier. Because banks hold large volumes of sensitive data, model security and the risk of false positives are particularly important.
Anthropic recently said it was ready to offer Mythos to British banks, but as of July 20, 2026, it had not disclosed the participating banks, deployment date, contract value or pricing model. The model’s release was previously delayed for safety testing, and the initiative signals that the company is moving ahead with real-world deployment in the financial sector.
Subscribe to Mark Radar Weekly
Every Friday, the week's strongest signals in your inbox. Unsubscribe anytime.