financial modeling

Anthropic enlists a dozen partners to secure critical infrastructure with an unreleased AI model.

On Tuesday, Anthropic unveiled Project Glasswing, a groundbreaking cybersecurity initiative that integrates its unreleased AI model, Claude Mythos Preview, with a coalition of twelve leading tech and finance firms.

4 min readVentureBeat
Anthropic enlists a dozen partners to secure critical infrastructure with an unreleased AI model.

Anthropic has spent the last week making it clear that it intends to be the adult in the room, the one willing to say the quiet part out loud. Project Glasswing is not a feature launch. It is a confession. The company that built Claude Mythos Preview is telling us that this model is too dangerous to hand out freely, yet too important to keep hidden. That tension is the most honest thing any AI lab has said in years. For too long, the industry has sold capability as if it were automatically beneficial. Anthropic is now asking us to hold two truths at once: this technology can find a 27-year-old flaw in OpenBSD in seconds, and it must not fall into the wrong hands. That is not a marketing slogan. That is a responsibility.

The coalition is impressive, but the real test is in the details. Anthropic says it will triage every finding, hand-validate reports, and pace disclosures so that volunteer maintainers are not buried under an avalanche of machine-generated bug reports. That is the right instinct. It is also the only viable path. The moment you flood the Linux kernel with thousands of unverified zero-days, you are not securing critical infrastructure, you are weaponizing it against the people who maintain it. The company's commitment to include candidate patches, clearly labeled as model-written, is a practical acknowledgment that finding a bug and fixing it are two different skills. And the 45-day disclosure window? Reasonable, but it assumes maintainers can ship a patch that fast. For kernel-level flaws, that is not a given. The process will be tested at a scale no one has attempted before, and we should watch it closely, not with cynicism, but with the expectation that the plan will need to adapt.

There is also the matter of trust, and here Anthropic has made its own job harder than it needed to be. A leaked blog post and an npm packaging error that exposed half a million lines of source code are not breaches of the model itself, but they are exactly the kind of operational sloppiness that gives regulators and enterprise buyers pause. When you are asking the world to hand you the keys to its most sensitive systems, the bar is not "better than the last incident." It is "flawless." The company's defenders will point out that no core systems were compromised, and they are right. But the optics matter. If you are going to tell the world that your model can autonomously chain Linux kernel exploits, you cannot afford to look like you are running your own infrastructure on autopilot. The good news is that the substance of the program, the partners, the patched vulnerabilities, the disclosure pipeline, is stronger than the stumbles. The bad news is that in cybersecurity, reputation is a lead time, and Anthropic just spent some of its own.

The timeline is the final and most urgent variable. Anthropic is telling us that adversaries could have similar capabilities within months, not years. That is a short window, and it means the next 90 days, when the company has promised to report on what it has learned, matter more than any roadmap. The partners who have already tested the model are reporting real results, but this is not a victory lap. It is a head start. The question is not whether Anthropic can find vulnerabilities; it is whether the defenders can patch them faster than the attackers can weaponize them. Project Glasswing is a bet that transparency can outrun proliferation. It is a good bet. But it is a bet, and the house is the rest of the world's critical infrastructure. We should all be watching the cards.

From VentureBeat

Anthropic on Tuesday announced Project Glasswing, a sweeping cybersecurity initiative that pairs an unreleased frontier AI model — Claude Mythos Preview — with a coalition of twelve major technology and finance companies in an effort to find and patch software vulnerabilities across the world's most critical infrastructure before adversaries can exploit them.

Read the original at VentureBeat