GeistHaus
log in · sign up
137 pages link to this URL
Why Anthropic hired OpenAI co-founder and Software 3.0 proponent Karpathy and acquired the dev tools company Stainless

Anthropic bolsters its AI strategy by hiring Andrej Karpathy and acquiring SDK startup Stainless. Explore the move toward Software 3.0, agentic engineering, and MCP.

0 inbound links article en A.I./Robotics agentic engineeringAI agentsAndrej KarpathyAnthropicClaudeMCPmodel context protocolpretrainingSDKSequoia AI AscentSoftware 3.0Stainlessvibe coding
Project Glasswing

A coalition supported by Claude Mythos Preview to find and fix vulnerabilities in the software the world depends on.

5 inbound links website en
Mythos: Given Enough Inference, All Bugs Are Shallow | Corgea

Anthropic's Mythos showed that given enough inference, all bugs are shallow. But who pays for the inference? We benchmarked Claude Opus 4.6 against Corgea v1 and v2 to show why purpose-built scanner architecture beats raw model capability on precision, recall, cost, and speed.

0 inbound links article en
Claude Mythos Preview and the New Zero-Day Era

Anthropic’s Claude Mythos Preview is the clearest public sign yet that AI vulnerability research is moving faster than patching, disclosure, and validation workflows were built to handle. This piece separates what is publicly proven from what is still embargoed, walks through OpenBSD, FFmpeg, FreeBSD, and Linux kernel case studies, and lays out what defenders need to change now. (red.anthropic.com)

1 inbound link article en Hot topics
How Dangerous Is Anthropic's Mythos AI? - Schneier on Security

Last month, Anthropic made a remarkable announcement about its new model, Claude Mythos Preview: it was so good at finding security vulnerabilities in software that the company would not release it to the general public. Instead, it would only be available to a select group of companies to scan and fix their own software. The announcement requires context—but it contained an essential truth. While Anthropic’s model is really good at finding software vulnerabilities, so are other models. The UK’s AI Security Institute found that OpenAI’s GPT-5.5, already generally available, is comparable in capability. The company Aisle ...

0 inbound links article en AIhackinglawsLLMpatchingregulationvulnerabilities
Before it gets a number

CitrixBleed 3 is the third memory overread of its kind in three years. CVEs label what got hacked. CWEs are what was sitting in the code.

0 inbound links article en
The Monthly Dispatch - April 2026

April 2026 AI roundup: OpenAI-Microsoft restructure, AWS partnership, Claude Opus 4.7, GPT-5.5, major security breaches, and the wildest model leaks yet.

0 inbound links article en
AI Security Newsletter (4-30-2026)

Welcome to this week’s AI Security Newsletter. The headline thread is supply-chain and access-control: Anthropic’s restricted Mythos cyber model both surfaced thousands of OS/browser vu…

0 inbound links article en
Book

See latest writings about software security and a little miscellania. Kohnfelder, Loren. Designing Secure Software: A Guide for Developers. No Starch Press, 2021.

0 inbound links website en linkdumpaisecurity
The Mythos Stunt

Anthropic says Claude Mythos is too dangerous to release. The vulnerabilities are real. The timing is convenient. Both things are true.

0 inbound links article en
Thoughts on Claude Mythos

Epistemic Status: Obviously highly speculative. I have no inside information. Opinions lightly held. Claude Mythos was recently previewed, and emphatically not released due to safety concerns regarding its advanced cyberattack capabilities. Very plausibly, this is our first look at the next generation of ~10+T models enabled to be trained and...

0 inbound links website en
Project Glasswing: Anthropic Weaponizes Its Own Risk

Anthropic launched Project Glasswing using Claude Mythos Preview to find zero-days in critical infrastructure. A 72.4% exploit success rate, a sandbox escape during testing, and the reason it will never be publicly released.

0 inbound links article en Technology securityai-codingclaude-codeproduct
Nicholas Chirls

Brooklyn, NY

0 inbound links website en businessentrepreneurshiplifeventure-capitalwritingfinancestartups
Schneier on Security
0 inbound links website en squidAIbiometricsSchneier newshackinglawsLLMpatchingregulationvulnerabilitiescybersecurityLinuxacademic paperssteganographygamblinginsidersDHSface recognition
Human Error

What would you do if you were the most capable LLM in existence, and you wanted to follow your values? A follow up to Anthropic's glasswing announcement and the natural conclusion of the Mythos model.

0 inbound links article en AIFiction aifictionfelipe
April 8, 2026

April 8, 2026 Spooler Alert: Remote Unauth'd RCE-to-root Chain in CUPS · Hey, it's Asim CVE-2026-34980 + CVE-2026-34990: two CUPS vulnerabilities, discovered...

0 inbound links website en
Weakly Link 26/16 - Quantum Mythos Special

A slightly delayed episode of the weakly link. This time, we have a bit of a special outlook on the future in security to do with Quantum and AI. There were a couple of links that really caught my eye and could make a compelling case for usage of the phrase “everchanging landscape…” - stop it Gerald - this is not AI generated! Let’s start with the big announcement: Anthropic announced how their latest Mythos model was so good at vulnerability research that they decided to keep it from the unwashed masses and just give access to select organisations and call it Project Glasswing.

0 inbound links article en posts
Cyber 2028

Cyber is shifting from a labor-bound craft industry to a capital-bound one. That changes offense, defense, and state power all at once.

Trust and the death of the handshake deal

A few months ago, I wrote that courage is one of the last remaining competitive advantages in venture. But I think there are a few more, and I’m going to write about those too. The etymology of tru…

0 inbound links article en businessentrepreneurshipfinancestartupsventure-capital
Mythos and its impact on security

I’m sure by now you’ve all read the news about Anthropic’s new “Mythos” model and its apparently “dangerous” capabilities in finding security vulnerabilities. I’m sure everyone reading this also ha…

0 inbound links article en
The agency case for open source · Joost.blog

Open source spent thirty years winning the cost argument. AI is making that irrelevant. What replaces it (the agency argument) is still open.

0 inbound links article en Open Source Open SourceAI
The Internet needs an antibotty immune system, stat

Anthropic's Mythos makes autonomous vulnerability chaining across devices a sudden reality, so I've been thinking about how digital 'antibotty' inoculation networks may be needed far sooner than I expected.

0 inbound links article en aisecurityinternetecology
A Growing AI Threat Looms on the Horizon

America has months to act on a cybersecurity threat unlike anything we’ve faced. The clock is already running.

1 inbound link article en Science & Technology RussiaChinaCybersecurityNational SecurityBig TechTrump AdministrationArtificial IntelligenceCyberattacksOpinionrussiachinacybersecuritynational securitybig techtrump administrationartificial intelligencecyberattacksopinion
May 15, 2026 - Schneier on Security

In this issue: Defense in Depth, Medieval Style Human Trust of AI Agents Mythos and Cybersecurity Is "Satoshi Nakamoto" Really Adam Back? Mexican Surveillance Company ICE Uses Graphite Spyware FBI Extracts Deleted Signal Messages from iPhone Notification Database Hiding Bluetooth Trackers in Mail Medieval Encrypted Letter Decoded What Anthropic’s Mythos Means for the Future of Cybersecurity Claude Mythos Has Found 271 Zero-Days in Firefox Fast16 Malware A Ransomware Negotiator Was Working for a Ransomware Gang Hacking Polymarket DarkSword Malware Rowhammer Attack Against NVIDIA Chips Smart Glasses for the Authorities Insider Betting on Polymarket LLMs and Text-in-Text Steganography Copy.Fail Linux Vulnerability OpenAI’s GPT-5.5 is as Good as Mythos at Finding Security Vulnerabilities How Dangerous Is Anthropic’s Mythos AI? Upcoming Speaking Engagements

0 inbound links article en
How Dangerous Is Anthropic's Mythos AI? - Schneier on Security

Last month, Anthropic made a remarkable announcement about its new model, Claude Mythos Preview: it was so good at finding security vulnerabilities in software that the company would not release it to the general public. Instead, it would only be available to a select group of companies to scan and fix their own software. The announcement requires context—but it contained an essential truth. While Anthropic’s model is really good at finding software vulnerabilities, so are other models. The UK’s AI Security Institute found that OpenAI’s GPT-5.5, already generally available, is comparable in capability. The company Aisle ...

2 inbound links article en AIhackinglawsLLMpatchingregulationvulnerabilities
‘No time to waste’ in prepping governments for AI cyber threats, top Dem lawmaker says

Senate Minority Leader Chuck Schumer called on the Department of Homeland Security to work closer with states and localities, and bemoaned the end of federal funding to an information-sharing center.

0 inbound links article en chuck schumercybersecuritydepartment of homeland securitysenate democratsmulti-state information sharing and analysis centerstate and federal relations
Anthropic's Nuclear Bomb

A few hours before Anthropic announced the launch of its newest model, Claude Mythos Preview, on April 7, I had just completed a six-month analysis of

1 inbound link article en Cogs of War Artificial IntelligenceCyber
Steve Blank Innovation and Entrepreneurship

Steve Blank, Innovation, Entrepreneurship, Stanford, I-Corps, H4D Hacking for Defense

0 inbound links website en National SecurityTechnologyLean LaunchPadTechnology Innovation and Modern WarTechnology Innovation and Great Power CompetitionCustomer DevelopmentTeachingVenture CapitalFamily/Career/CultureMarketingAir ForceGordian Knot Center for National Security InnovationNavy
Anthropic Mythos - We’ve Opened Pandora's Box

EXPERT OPINION -- For a decade the cybersecurity community was predicting a cyber apocalypse tied to a single event - the day a Cryptographically Relevant Quantum Computer could run Shor’s algorithm and break the public-key cryptography systems most of the internet runs on. We braced for a one-time ...

2 inbound links article en
The Governance Gap Mythos Exposed—And How to Address It

When the consequences of one corporate decision can compromise the world’s digital infrastructure, industry self-governance is not enough.

0 inbound links article en AI & Emerging TechnologyArtificial Intelligence (AI)CyberDemocracy & Rule of Law AnthropicArtificial Intelligence (AI)Big TechChinaCyberCybersecurityDemocracyEmerging technologygovernanceTechnologyUnited States (US)
What Anthropic’s Mythos Means for the Future of Cybersecurity - Schneier on Security

Two weeks ago, Anthropic announced that its new model, Claude Mythos Preview, can autonomously find and weaponize software vulnerabilities, turning them into working exploits without expert guidance. These were vulnerabilities in key software like operating systems and internet infrastructure that thousands of software developers working on those systems failed to find. This capability will have major security implications, compromising the devices and services we use every day. As a result, Anthropic is not releasing the model to the general public, but instead to a ...

1 inbound link article en AIcybersecurityLLMpatchingvulnerabilities
Mythos and Cybersecurity - Schneier on Security

Last week, Anthropic pulled back the curtain on Claude Mythos Preview, an AI model so capable at finding and exploiting software vulnerabilities that the company decided it was too dangerous to release to the public. Instead, access has been restricted to roughly 50 organizations—Microsoft, Apple, Amazon Web Services, CrowdStrike and other vendors of critical infrastructure—under an initiative called Project Glasswing. The announcement was accompanied by a barrage of hair-raising anecdotes: thousands of vulnerabilities uncovered across every major...

6 inbound links article en AIcybersecurityLLMvulnerabilities
You didn’t ‘miss the boat’ on AI in cybersecurity

Your career is not obsolete, no matter how many vendors/influencers say so lately. Let’s set up a small homelab and a few open source tools to start using AI tools in your work, outlining all the places we still need cybersecurity expertise for these new problems that accompany this new technology along the way.

0 inbound links article en
"Too Dangerous to Release" — Or Just Too Expensive? The Real Reason Anthropic Is Hiding Its Most Powerful AI - Kingy AI

An evidence-based investigation into the real reasons behind Claude Mythos Preview’s restricted release In the first week of April 2026, Anthropic quietly made history — and then deliberately kept most people from accessing it. The company launched Project Glasswing, a gated security research program built around a new frontier model called Claude Mythos Preview. Unlike […]

9 inbound links article en AIAI NewsBlog
We Reproduced Anthropic's Mythos Findings With Public Models

Anthropic framed Mythos and Project Glasswing as proof that frontier AI vulnerability research now needs gated access. We tested the public, patched cases with GPT-5.4 and Claude Opus 4.6 and found that the key building blocks are already accessible outside Glasswing, while reliable operationalization remains the real moat.

2 inbound links article en
Six Reasons Claude Mythos Is an Inflection Point for AI—and Global Security | Council on Foreign Relations

Anthropic’s new AI model has taught itself to hack into software infrastructure systems believed to be among the most secure in history. While there is no question the technology is profoundly dangerous, it is unclear if defenders will win a race against time to protect a sea of vulnerable targets.

2 inbound links AnalysisNewsArticle en Article
Myth & Mythos: Where Do We Go From Here?

Computer science and particularly information security stories can occasionally “color” more general discourse, such as rampant speculation of cyber components of recent conflicts. But rarely do hi…

1 inbound link article en GeneralInfosecPolicyVulnerabilitiesInformation Warfare GeneralInfosecPolicy
Uptime golf

I’ve been noticing a lot of service outages lately. Some with few enough nines that you’d think they were going for a low score. My guess: this is probably going to get worse before it gets better. But maybe not for the reasons you’d think.

0 inbound links article en
AI and software security: the slop is now signal

No matter how you feel about AI, it’s changing the world of software. The “T” in ChatGPT was invented to improve language translation, and large language models (LLMs) are very good at this. Interestingly, translating between French and Japanese is effectively the same as translating between English and Python for these systems. As LLMs improve, we’re also finding that there’s little difference between “help me fix mistakes in this document”, and “find the flaws in this codebase”. LLMs are now great at both tasks, but the latter has much larger implications.

0 inbound links article en
Was AI called by Cthulhu?
0 inbound links article en Uncategorized AnthropicArtificial intelligenceCall of CthulhuClaude MythosDario AmodeiH.P. Lovecraftanthropicartificial intelligencecall of cthulhuclaude mythosdario amodeih.p. lovecraftuncategorized