Project Glasswing
AssessPlatforms
Anthropic's deployment program for trusted cybersecurity access in collaboration with the US government.
Why it's here
Placed in Assess: 8 article(s) of evidence from 7 source(s), led by security coverage, with 1 in the last 30 days. Confidence 94%.
Evidence (8)
- 7Ars Technica AI·7/29/2026securityAnthropic's Mythos uncovers Microsoft bugs faster than they can be fixed
Microsoft engineers met to discuss Project Glasswing after an AI model called Mythos surfaced code vulnerabilities at an unusually rapid pace. The access was part of Anthropic's effort to help selected organizations find and fix weaknesses before hostile actors could exploit them for espionage or sabotage.
- 6Hacker News·6/27/2026researchPost-Mythos Cybersecurity and the Limits of AI Vulnerability Hunting
The article argues that Anthropic’s Claude Mythos Preview has been framed as a major cybersecurity breakthrough, but that its results are better understood as an incremental improvement over earlier models. It notes that benchmark wins and old-vulnerability findings may be impressive, yet they do not necessarily reflect realistic enterprise environments or fundamentally new attack capability. The main practical impact may be the ability of well-funded organizations to scale exhaustive vulnerability searches at higher cost.
- 8InfoQ·6/26/2026securityAnthropic and 19 groups launch Akrites open-source security body
The Linux Foundation has launched Akrites, a coordinated open-source security body backed by about 20 organizations including Anthropic, Google, Microsoft, AWS, OpenAI, and others. The initiative creates a shared incident response process to consolidate vulnerability findings, reduce duplicate reports, and help upstream fixes before disclosures.
- 5Cloudflare Blog·6/18/2026researchHow to build a model-agnostic vulnerability harness
Cloudflare describes an architecture for large-scale vulnerability discovery that treats AI models as interchangeable components. The post focuses on using a harness to coordinate multi-phase security audits, reduce false positives, and triage findings across repositories and dependencies. It argues that persistence, deduplication, and cross-model validation are more important than any single model or prompt.
- 7Cloudflare Blog·6/9/2026securityCloudflare details defenses against frontier cyber models
Cloudflare expands on how frontier cyber models change the speed and scale of vulnerability discovery, exploit generation, and attack adaptation. The company describes its own security stack as a “customer zero” reference architecture and says the same principles apply to other organizations using layered defenses, monitoring, and patching workflows.
- 9Anthropic News·6/9/2026model_releaseAnthropic launches Claude Fable 5 and Claude Mythos 5
Anthropic introduced Claude Fable 5 as a safe-for-general-use model and Claude Mythos 5 as a restricted-access variant for cyberdefenders and infrastructure providers. The company says both models deliver state-of-the-art performance across software engineering, knowledge work, vision, and scientific research, while adding safeguards and lower pricing than prior offerings.
- 8Anthropic News·6/2/2026securityAnthropic expands Project Glasswing to 150 more organizations
Anthropic is expanding Project Glasswing, a security program that gives trusted organizations access to Claude Mythos Preview for scanning codebases for vulnerabilities. The new cohort includes about 150 organizations across more than 15 countries, with a focus on critical infrastructure sectors such as power, water, healthcare, communications, and hardware. The company also said it is releasing Claude Security and sharing internal tools with trusted security teams to help detect and fix vulnerabilities faster.
- 7Hugging Face Blog·4/21/2026securityWhy openness matters for AI cybersecurity
The article argues that AI cybersecurity is increasingly shaped by autonomous systems that can detect, verify, and patch software vulnerabilities. It says open code and tooling can distribute security work across communities, reducing single points of failure and helping defenders keep pace with AI-enabled attacks.