Newest Anthropic AI Model Exposes Vulnerabilities in Software Security

Try Our Free Tools!
Master the web with Free Tools that work as hard as you do. From Text Analysis to Website Management, we empower your digital journey with expert guidance and free, powerful tools.

Anthropic Reveals Claude Mythos: A New Frontier in Cybersecurity

On Tuesday, Anthropic announced its upcoming artificial intelligence model, Claude Mythos, which has exhibited remarkable proficiency in identifying software vulnerabilities.

This innovative model has uncovered thousands of flaws in widely-utilized applications that remain without patches or solutions, prompting the San Francisco-based startup to collaborate with cybersecurity experts to strengthen defenses against potential hacking threats.

Mike Krieger from Anthropic Labs disclosed at the HumanX AI conference in San Francisco, “We have a new model that we’re explicitly not releasing to the public.”

Instead of a public launch, Anthropic is permitting cybersecurity professionals and engineers within the open-source community to engage with Mythos, using the model as a defensive instrument. “This approach essentially arms them ahead of time,” Krieger elaborated.

The advancements in AI model capabilities have raised alarms regarding malicious actors employing such technologies to decipher passwords or penetrate encryption that safeguards sensitive data.

Notably, the oldest vulnerabilities highlighted by Mythos date back 27 years, none of which had previously been detected by their original developers before being identified by the AI model, as indicated by Anthropic.

Mythos marks the latest iteration in Anthropic’s Claude AI series, and a recent leak of some of its underlying code has prompted the company to issue a blog post emphasizing unprecedented cybersecurity hazards.

In their communication, Anthropic noted, “AI models have achieved a level of coding capability where they can outperform nearly all but the most adept humans in discerning and exploiting software vulnerabilities.” The ramifications of such developments for economies, public safety, and national security could be dire.

According to Anthropic, the vulnerabilities unveiled by Mythos were often nuanced and challenging to detect without the aid of AI. For instance, the model identified a previously overlooked flaw in video software that had undergone testing over five million times by its developers.

Project Glasswing

As a precautionary measure, Anthropic has shared a version of Mythos with cybersecurity firms such as CrowdStrike and Palo Alto Networks, in addition to tech giants Amazon, Apple, and Microsoft, under the initiative known as “Glasswing.”

Networking powerhouses Cisco and Broadcom, along with the Linux Foundation—an entity that advocates for the free and open-source Linux operating system—are also collaborating on this project.

Anthony Grieco, Cisco’s chief security and trust officer, stated in a joint release, “This work is too important and too urgent to pursue individually.”

He emphasized that “AI capabilities have crossed a threshold that fundamentally changes the urgency required to protect critical infrastructure from cyber threats, and there is no turning back.”

Approximately 40 organizations involved in the design, maintenance, or operation of computer systems are reportedly participating in Glasswing.

According to Anthropic, project partners will exchange their insights gleaned from Mythos, with Anthropic providing around $100 million worth of computing resources to facilitate the initiative.

Preliminary efforts utilizing AI models have demonstrated their potential to discover and rectify software and hardware vulnerabilities at previously unattainable speeds and scales.

“The interval between the discovery of a vulnerability and its exploitation by an adversary has dramatically contracted—what once took months can now occur within minutes thanks to AI,” stated Elia Zaitsev, chief technology officer at CrowdStrike.

“The Claude Mythos Preview illustrates what is now achievable for defenders at scale, while adversaries are likely to seek to exploit these same capabilities.”

A smartphone displaying the word Anthropic lies on a wooden desk near a mug and two potted plants.

Furthermore, Anthropic has engaged in discussions with the US government concerning Mythos, despite a directive issued by the White House in February that annulled all contracts with the startup.

This mandate is currently on hold, following a federal court judge’s ruling pending the resolution of a legal challenge put forth by Anthropic.

Source link: News-shield.com.

Disclosure: This article is for general information only and is based on publicly available sources. We aim for accuracy but can't guarantee it. The views expressed are the author's and may not reflect those of the publication. Some content was created with help from AI and reviewed by a human for clarity and accuracy. We value transparency and encourage readers to verify important details. This article may include affiliate links. If you buy something through them, we may earn a small commission — at no extra cost to you. All information is carefully selected and reviewed to ensure it's helpful and trustworthy.

Reported By

Neil Hemmings

I'm Neil Hemmings from Anaheim, CA, with an Associate of Science in Computer Science from Diablo Valley College. As Senior Tech Associate and Content Manager at RS Web Solutions, I write about AI, gadgets, cybersecurity, and apps – sharing hands-on reviews, tutorials, and practical tech insights.
Share the Love
Related News Worth Reading