I wonder if Mythos found anything with RSA. We probably wouldn't hear about it.
But more, I wonder if the next one to achieve Mythos-level will find anything in RSA.
the scariest part of this Anthropic story is what it implies about the timeline and I think most people are completely missing it
Anthropic built a model called Claude Mythos that found thousands of zeroo day vulnerabilities across every major operating system & every major web browser entirely on its own without huuman steering
it it found a 27 yo vulnerability in openBSD which is considered one of the most security hardened OS on earth, a 16 yo vulnerability in FFmpeg in a line of code that automated testing tools had hit 5 million times without catching it & it autonomously chained multiple linux kernel vulnerabilities together to escalate from regular user to full system control, this is the kind of work that used to require elite nation-state level hackers working for months
and here’s what should keep you up tonight
Anthropic is so terrified of what this model can do offensively that they made 3 unprecedented decisions simultaneously, they decided to never release it publicly, they contacted the US gov before publishing anything & they formed a coalition called project glasswing with apple/Google/ microsoft/amazon NVIDIA & 40 other companies to use Mythos exclusively for defense, when the company that built the model is too scared to let it out of the lab that tells you everything about what we’ve crossedd…
but I think the real story that absolutely nobody is discussing is the second order implication, if anthropic built this then google deepmind can build it, if Google can build it China can build it, if China can build it , every state actor on earth will eventually build it, anthropic chose responsible disclosure but that choice is a luxury of being first
the next team that reaches this capability level might not make the same choice and once a model like this leaks or gets independently replicated every piece of software on earth becomes a potential attack surface
and connect this to the Google quantum paper from last week, quantum computers that can crack BTC in 9 min AND AI models that can find zero days in every operating system autonomously, both arrived in the same month, we’re watching the entire security infrastructure of human civilization get challenged from 2 completely different directions simultaneously
I genuinely think we just entered a new era where the offense-defense balance in cybersecurity has permanently shifted, the window between a vulnerability existing & being discovered just went from years to minutes and the only thing standing between the current internet and total chaos is that the people who built this capability happened to be responsible about it, that is an incredibly thin line to bet civilization on
one last thing that I keep thinking about… mythos scored 93.9% on SWE-bench verified & 77.8% on SWE-bench pro, it outperforms every model ever built at coding and reasoning by a massive margin
anthropic built built the most powerful AI model on earth and chose to lock it in a cage because its offensive capabilities are too dangerous…
Mzrc Andreessen declared AGI is here 3 days ago to pump his portfolio, meanwhile the people actually building the most advanced systems are too afraid to release them, that contrast tells you everything about who understands what’s happening and who is performing for an audience