Anthropic's Claude Mythos Preview Autonomously Finds and Exploits Zero-Day Vulnerabilities
Anthropic has demonstrated that its Claude Mythos Preview research model, paired with Claude Code, can autonomously identify and exploit zero-day vulnerabilities across real software including Firefox, the Linux kernel, OpenBSD, and FreeBSD's NFS service. In controlled testing, the system produced working exploits approximately 181 times and achieved register control in 29 cases across browser, OS, network, and cryptography domains. Anthropic framed the work as defensive cybersecurity research, employing coordinated disclosure and noting that over 99% of discovered bugs were withheld from public reporting due to patch status or timing. The company used cryptographic commitments to verify vulnerabilities existed at the time of testing, reducing risk before patches were available. While the results highlight AI's potential to accelerate defensive security work, they also raise governance concerns, as the same capabilities could be adapted for offensive cyber use.
This is an AI-generated summary. ShortSingh links to the original source for the complete article.

Discussion (0)
Log in to join the discussion and vote.
Log in