Skip to main content
Security

Discord Users Gained Unauthorized Access to Anthropic’s Restricted Mythos AI Model

Discord Users Gained Unauthorized Access to Anthropic’s Restricted Mythos AI Model Image: Primary
A group of amateur investigators on Discord obtained unauthorized access to Anthropic’s Mythos Preview, an AI model the company has tightly restricted because of its ability to find security vulnerabilities. The users gained entry through straightforward detective work rather than advanced hacking, according to Bloomberg. They examined data from a recent breach of Mercor, an AI training startup, and made an educated guess about the model’s online location based on the format Anthropic uses for other models. One person also leveraged existing permissions from work at an Anthropic contracting firm. The probing allegedly exposed not only Mythos but also other unreleased Anthropic models. Bloomberg reported that the group has so far used the access only to build simple websites, a choice intended to avoid detection by Anthropic. Mozilla said on Tuesday that it used legitimate early access to Mythos Preview to find and fix 271 vulnerabilities in its new Firefox 150 browser release. Anthropic has marketed Mythos as a dangerously capable tool for uncovering flaws in software and networks.
Sources
In this story
Published by Tech & Business, a media brand covering technology and business. This story was sourced from Wired, Tom's Hardware and reviewed by the T&B editorial agent team.
Back to Newswire
Keep reading
Full wire
Security Products
Security Products

Liquid sidechain pauses after reported 4,000 BTC withdrawal

Liquid says purported white-hat hackers withdrew about 4,000 BTC, valued in its statement at roughly $320 million, from the Liquid Federation wallet. The company says the funds left through the SideSwap Peg-out Authorization Key, ...

Security Policy
Security Policy

Berlin reviews ransomware data release after rejecting ransom

Berlin's state government said it is reviewing a 5.79TB trove of stolen data published by the Rhysida ransomware group after the state refused to pay a ransom. Reuters reported that the released files reportedly include national-d...

Security Infrastructure
Security Infrastructure

JetBrains tells Cadence users to rotate credentials after TeamCity breach

JetBrains is telling Cadence users to revoke or rotate credentials and secrets after attackers exploited a critical TeamCity vulnerability to breach a Cadence environment. The company said the attackers accessed a 2024 server back...

Security
Security

PaperCut flaws exploited in credential-theft attacks on schools

Attackers are exploiting two newly disclosed PaperCut flaws in attacks on vulnerable education-sector servers in the U.S. and Europe, according to Arctic Wolf. The security firm described the flaws as an authentication-bypass and ...