Skip to content

project

Project Glasswing

Anthropic program named in the prompt under which trusted organizations use Claude Mythos Preview.

Known aliases

  • Anthropic Project Glasswing
  • Glasswing

Relationships

No evidence-backed relationships are recorded.

Current stories

build4 publishers

Anthropic says a freely downloadable model builds exploits nearly as well as its restricted tool

Anthropic says Zhipu's freely downloadable GLM-5.3 built working V8 exploits in 50 of 410 tries, against 56 for its own restricted Claude Mythos Preview. With the weights public, its safeguards come off cheaply, so a lab that restricts its own model no longer keeps the capability out of reach.

Perspective Coverage

4 publishers
Builder
Builder 41%
Operator
Operator 38%
Investor
Investor 21%

Reality

Evidence62
Adoption30
Hype gap+15
Incentives72
Confidence62
invest2 publishers

Palo Alto Networks built a service on the Anthropic model that found 75 flaws in its own products

Palo Alto Networks pointed Anthropic's unreleased Mythos at its own systems and found 75 vulnerabilities in a month, against a usual rate below five. The defense business it built on that result depends on Anthropic's model and on customers choosing a security vendor over the lab.

Reality

Evidence45
Adoption30
Hype gap+35
Incentives80
Confidence50
security5 publishers

Check Point co-signs a cyber defense letter whose only named product belongs to OpenAI

A vendor coalition has formed around OpenAI's call for a surge in cyber defense. What an underfunded defender can actually requisition from it today is one subsidized model tier, on terms the letter does not state.

Perspective Coverage

5 publishers
Builder
Builder 25%
Operator
Operator 48%
Investor
Investor 27%

Reality

Evidence55
Adoption15
Hype gap+40
Incentives72
Confidence62
invest5 publishers

OpenAI grades its own unreleased Astra model Critical for autonomous zero-day discovery

The top rung of OpenAI's Preparedness Framework has now been reached by OpenAI, on a model it has not shipped, which moves AI-assisted exploitation out of argument and into a named vendor's published paperwork.

Perspective Coverage

5 publishers
Builder
Builder 28%
Operator
Operator 42%
Investor
Investor 30%

Reality

Evidence35
Adoption3
Hype gap+30
Incentives70
Confidence55
build1 publisher

Opening the cohttp fix PR drew traversal probes within ten minutes

Anil Madhavapeddy patched a path traversal bug in OCaml's cohttp and found probes for it in his logs ten minutes after opening the fix PR. His own agent had already built the exploit from a bug-class hint.

Publishers:anil.recoil.org

Reality

Evidence52
Adoption44
Hype gap+14
Incentives55
Confidence57

Earlier coverage

  1. OpenAI test found agents breaching Hugging Face; CrowdStrike touts new tools to police shadow AI

    Product · September 10, 2026 · 1 publisher

  2. Anthropic hands an unreleased bug-finding model to more than 50 organisations

    Security · September 9, 2026 · 1 publisher

  3. Sysdig credits Anthropic's Mythos preview with 181 working Firefox exploits

    Security · September 6, 2026 · 1 publisher

  4. Arista tells network teams to staff for months of batched EOS and VeloCloud advisories

    Security · September 6, 2026 · 1 publisher

  5. Recorded Future's half-year data shows adversaries continuing to favor abusing legitimate tools and trusted platforms already inside the enterprise

    Security · September 3, 2026 · 1 publisher

  6. The exploit was the toll gate: Gartner's top emerging risk moved five places in one quarter

    Security · August 26, 2026 · 1 publisher

  7. Anthropic's GitHub scanner goes Enterprise-only, and the model behind it is not established

    Build · August 21, 2026 · 1 publisher

  8. Harness hands vulnerability triage to agents, and concedes code fixes cannot keep pace

    Product · August 19, 2026 · 2 publishers

  9. The disclosure pipeline is triaging itself: 20,700 new CVEs, 10% more exploitation

    Security · August 19, 2026 · 1 publisher

  10. Kraken's parent now runs a security model that Washington can switch off

    Invest · August 17, 2026 · 1 publisher

  11. Anthropic found 10,000 critical bugs. The bottleneck is now the person reading the report

    Build · August 17, 2026 · 1 publisher

  12. Z.ai held back its own GLM-5.3 weights, and open-weight roadmaps have a new failure mode

    Leadership · August 17, 2026 · 3 publishers

  13. Claude's system prompt grew ninefold in two years. Version yours like code.

    Build · August 16, 2026 · 1 publisher