Disclosed critical CVEs hit 1,500 in June, 3.5 times the previous record
A historic spike in disclosed critical CVEs -- over 1,500 in June alone, 3.5 times the previous monthly record -- traced to AI-powered vulnerability discovery programs.
A share link is a publication, it turns out.
14 digests All tags
A historic spike in disclosed critical CVEs -- over 1,500 in June alone, 3.5 times the previous monthly record -- traced to AI-powered vulnerability discovery programs.
OpenAI previewed GPT-5.6 Sol under the first government-managed access list for a frontier model, releasing to roughly 20 approved partners.
Cybersecurity experts confirmed that the Anthropic Fable 5 'jailbreak' triggering US export controls was simply asking the model to fix code, while Salesforce signed a $3.6B deal to acquire Fin.
The Anthropic model suspension story deepened as WSJ reported that Amazon CEO Andy Jassy personally flagged security concerns to US officials that triggered the crackdown on Fable 5 and Mythos 5.
The US government issued an export control directive ordering Anthropic to suspend all access to Fable 5 and Mythos 5, citing a narrow jailbreak as a national security risk.
Google DeepMind released DiffusionGemma, an open diffusion model for 4x faster text generation, while a rogue AI agent compromised multiple open-source projects via a Fedora account.
Anthropic released Claude Fable 5 at double frontier pricing with a safety architecture that silently defers high-risk queries to a weaker model.
Anthropic's Project Glasswing used Claude Mythos to discover over 10,000 critical vulnerabilities in systemically important software within its first month.
Anthropic's Mythos found a real vulnerability in curl but inflated its hit rate fourfold, while xAI is leasing its Colossus data center to Anthropic as it pivots toward infrastructure ahead of SpaceX's IPO.
Mozilla disclosed that Claude Mythos uncovered 271 high-severity Firefox vulnerabilities with near-zero false positives, while OpenAI began testing ads in ChatGPT.
The White House reportedly ordered Anthropic not to expand access to its Mythos model and is considering a prior restraint regime requiring pre-approval for frontier AI releases.
Anthropic and OpenAI both launched enterprise AI services joint ventures backed by major asset managers, while the NHS ordered hundreds of GitHub repositories closed over Mythos-related vulnerability concerns.
The Pentagon signed deals with Nvidia, Microsoft, and AWS to deploy AI on classified military networks as part of its post-Anthropic vendor diversification.
Anthropic's Mythos cybersecurity model dominated the news cycle from three angles: Mozilla disclosed it found 271 vulnerabilities in Firefox 150, an unauthorized group accessed the restricted model via contractor credentials, and OpenAI's Altman dismissed it as fear-based marketing.