Claude Mythos
Large language model
From Wikipedia, the free encyclopedia
Claude Mythos is a series of large language models developed by Anthropic. The first model in the series was Claude Mythos Preview. Anthropic did not release the model to the public, due to its unusually strong ability to find software vulnerabilities.[1] The public had mixed reactions to the announcement of Claude Mythos Preview.[2] A publicly-available version of the model, Claude Fable 5, was later released, along with a private version called Claude Mythos 5.
June 9, 2026
| Claude Mythos | |
|---|---|
| Developer | Anthropic |
| Release | April 7, 2026 |
| Stable release | Claude Mythos 5 / June 9, 2026 |
| Type | |
| License | Proprietary |
History
Leak (March 26 – April 7)
The existence of a model named Claude Mythos had become publicly known on March 26, 2026 due to leaked blog post drafts.[3] Anthropic later acknowledged the development of Mythos to Fortune, and said that the model presented significant risks to cybersecurity.[4] According to Axios, Anthropic had issued a warning about Mythos's capabilities to government officials that month.[5]
Mythos Preview (April 7 – June 9)
Anthropic publicly disclosed Mythos on April 7.[6] The company stated that it had no plan to release Mythos to the public.[7] It instead launched Project Glasswing, with a consortium of companies using Mythos to find and fix software vulnerabilities. Over forty companies were granted access, including Microsoft, Apple, Google, Amazon Web Services, the Linux Foundation, Cisco, Nvidia, and Broadcom.[8] That day, several unauthorized users gained access to Mythos, according to Bloomberg News.[9]
Reportedly, a few users in a private Discord channel gained access to Mythos the same day it was announced, using details from the recent Mercor data breach.[9] The NSA has also used Mythos, despite the fact that the DoD, its parent organization, had blacklisted Anthropic after a dispute.[10] In April 2026, the Chinese government requested access to Mythos, but was rebuffed.[failed verification][11]
On June 2, Anthropic expanded access to its Claude Mythos cyber-security model, making it available to 150 organizations in more than 15 countries.[12]
In its May 28, 2026 announcement of Claude Opus 4.8, Anthropic stated it expected to make "Mythos-class" models available to all customers within weeks of the announcement, pending the development of additional cybersecurity safeguards.[13]
Mythos 5 and Fable 5 (June 9 – present)
On June 9, Anthropic released Claude Mythos 5 as a preview via Project Glasswing alongside a version of Mythos with extended safeguards titled Fable 5.[14]
On June 12, the U.S. government sent Anthropic a letter prohibiting access to both Mythos 5 and Fable 5 to any non-U.S. national whatsoever, regardless of their location, due to national security concerns.[15] As a result, Anthropic revoked access to both models for all customers.[15]
On June 26, Anthropic started to restore access to Mythos to some U.S. organizations.[16][17]
On June 30, Anthropic announced on X.com that the U.S. Department of Commerce had lifted restrictions on both Fable 5 and Mythos 5.[18][19] They also announced that they would be restoring access to both models starting the next day.[18][20] On July 1st, at approximately 12:30 pm Pacific Time, Anthropic announced that Fable model access had been restored.[21] Promotional access would initially end on July 7, 2026;[21] however, this was later extended.[citation needed]
Specifications and capabilities
Claude Mythos Preview is a large language model designed to fix vulnerabilities within software.[22][2] The UK AI Security Institute tested Claude Mythos with a cyber range. Claude Mythos ranked highest, with Claude Opus 4.6 coming in second, followed by a tie between GPT-5.4 and GPT-5.3 Codex.[23]
Reported vulnerabilities
Anthropic stated that Mythos had found vulnerabilities in "every major operating system and every major web browser" in its testing.[24] An independent security researcher cast doubt on these claims, as no independent verification of these numbers can be found outside of promotional documents.[25] As the researcher notes, the peer-review-ready report produced by Anthropic admits that Claude Opus 4.6 was, in fact, the model which found the bugs before handing them off to Mythos for exploitation. The Firefox bugs reported were not found in Firefox, but in an environment intended to mimick the application with reduced security features. Furthermore, the Anthropic tests found that, while Mythos was able to achieve full code execution in 72.4% of cases, Claude Sonnet 4.6 outperformed the larger model when removing the two most exploitable bugs. When those bugs are removed, Mythos was only able to achieve full code execution in less than 5% of cases. Anthropic stated that "almost every successful run relies on the same two now-patched bugs."[26]
Another independent test found that one of the headline vulnerabilities identified by Mythos was also identified by 8 out of 8 tested open-source models, one with only 3.6B active parameters and costing 11 cents per million tokens.[27]
Two weeks after the limited release, Mozilla announced that it had found and patched 271 security vulnerabilities in Firefox using Mythos Preview.[28][29] On May 14, 2026, employees at Calif.io announced they had used Mythos to create a memory corruption exploit affecting Apple M5 chips.[30]
Fable 5 downgrade
Responses
Media response
Thomas Fraise, writing for The Conversation, argued that Mythos could ruin nuclear deterrence.[36] Brett J. Goldstein, writing for The New York Times, argued that the model puts individuals and smaller teams at a "cybersecurity disadvantage".[37]
Industry response
Financial response
Hours after Anthropic publicly revealed Mythos, U.S. secretary of the treasury Scott Bessent and Federal Reserve chair Jerome Powell convened financial executives to issue a warning on Mythos's capabilities.[38] Several banks began testing Mythos at their behest, including JPMorgan Chase, Goldman Sachs, Citigroup, Bank of America, and Morgan Stanley.[39] The Bank of Canada summoned major lenders to a similar meeting the following day.[40] Mythos was scheduled to be discussed by the Bank of England's Cross Market Operational Resilience Group and CMORG AI Taskforce meetings.[41]
European Central Bank president Christine Lagarde praised Anthropic for limiting access to Mythos.[42] In response to European banks that were not given access to Mythos, Mistral AI began developing its own model.[43]
Governmental responses
On April 14, 2026, Bloomberg reported that the United States Department of the Treasury was seeking access to Claude Mythos.[44] On April 16, the White House and Anthropic held a meeting about Mythos.[45] On May 13, a bipartisan group of 32 US Representatives wrote to the Office of the National Cyber Director (ONCD) on revisiting the U.S.'s federal cybersecurity policy.[46][47]
On April 23, Nirmala Sitharaman, chair of India's Ministry of Finance held a meeting of banks and government officials to discuss potential new cybersecurity threats following the release of Mythos.[48]
At a joint public-private meeting hosted by Japan's Financial Services Agency on April 24, participants agreed to form a work-group to counter potential threats caused by Mythos.[49]
After an April meeting with officials from Anthropic, Evan Solomon, the Canadian minister of artificial intelligence and digital innovation, praised Anthropic for limiting access to Mythos.[50]
Several meetings with banks were held by the Australian Prudential Regulation Authority in response to Mythos.[51]
In April 2026, Anthropic declined to provide access to Claude Mythos after allegedly receiving a request from a member of a Chinese think tank at a conference in Singapore. The Chinese Embassy in the United States stated that it was not familiar with the request and denied that the request was related to the Chinese government.[11]