Live data from Hacker News

US summons bank bosses over cyber risks from Anthropic's latest AI model

theguardian.com

61–70 of 101 posts

Re: US summons bank bosses over cyber risks from Anthropic's latest AI model

#61
post #6

Maybe it's marketing, but I think it's regrettable that Anthropic paired project Glasswing with Mythos. It really makes it seem like Mythos is the threat, rather than the fact that tons of vulnerabilities have always been ignored throughout the software world. If Glasswing has been started years ago with the goal of applying fixes to AI-found gaps, then this would just be another model to add to that effort. But doin…

[deleted]

Re: US summons bank bosses over cyber risks from Anthropic's latest AI model

#62

The more I live the more I believe people at the top operated in some sort of cult mentality. The level of gullibleness, temporary lack of critical thinking is only matched by their sociopathy and Machiavellianism. I'm sure it's a great big model, but the level of hype and dishonesty is something out of Sam Altman's book. Of course it's because of the upcoming IPO, but that's the end game, for now it's critical to ge…

Will you eat your words when major vuln disclosures come out 3-4 months from now?

Re: US summons bank bosses over cyber risks from Anthropic's latest AI model

#63
post #6

Maybe it's marketing, but I think it's regrettable that Anthropic paired project Glasswing with Mythos. It really makes it seem like Mythos is the threat, rather than the fact that tons of vulnerabilities have always been ignored throughout the software world. If Glasswing has been started years ago with the goal of applying fixes to AI-found gaps, then this would just be another model to add to that effort. But doin…

The strongest model we've benchmarked on our comprehensive, little known, and difficult to game benchmark, is still Claude Opus 4.5 for agentic workflows. That's not a typo.

Interpret that how you will, but if Anthropic had to take cost/resource savings measures after the last major release, less than 6 months ago, it's unlikely they have the economics to offer what Mythos is promised to be, at any sort of product scale. But I agree, it would be great to get stronger models and start securing all the junk on the web. Of course, that requires maintainers to know how to use these tools.

Benchmarks at https://gertlabs.com/?agentic=all

Re: US summons bank bosses over cyber risks from Anthropic's latest AI model

#64
post #6

Maybe it's marketing, but I think it's regrettable that Anthropic paired project Glasswing with Mythos. It really makes it seem like Mythos is the threat, rather than the fact that tons of vulnerabilities have always been ignored throughout the software world. If Glasswing has been started years ago with the goal of applying fixes to AI-found gaps, then this would just be another model to add to that effort. But doin…

This. I’ve been hearing panic from the non-security community about Mythos because “zomg z3r0 d4y5!!” Since the announcement but these are the same people running production servers 10 updates and 2 critical security fixes behind for years.

I don’t need cutting edge AI to take you down. I need MetaSploit with a CVE list that’s been updated in the last 6 months.

Re: US summons bank bosses over cyber risks from Anthropic's latest AI model

#65
post #38
post #3

Promoting the model as potentially dangerous might backfire with the government banning it from being released by executive order.

> the government banning it from being released by executive order. There's no legal mechanism for the president or the government at all to do that.

Of course there is. Fully automatic weapons are banned. Certain chemicals and biologics are banned. Certain hacking tools are banned (DMCA):

> The “tools” prohibitions, set out in sections 1201(a)(2) and 1201(b), outlaw the manufacturing, sale, distribution, or trafficking of tools and technologies that make circumvention possible. These provisions ban both technologies that defeat access controls, and also technologies that defeat use restrictions imposed by copyright owners, such as copy controls. These provisions prohibit the distribution of software that was designed to defeat CD copy-protection technologies, for example.

https://www.eff.org/pages/unintended-consequences-fifteen-ye...

Re: US summons bank bosses over cyber risks from Anthropic's latest AI model

#66
post #62

The more I live the more I believe people at the top operated in some sort of cult mentality. The level of gullibleness, temporary lack of critical thinking is only matched by their sociopathy and Machiavellianism. I'm sure it's a great big model, but the level of hype and dishonesty is something out of Sam Altman's book. Of course it's because of the upcoming IPO, but that's the end game, for now it's critical to ge…

Will you eat your words when major vuln disclosures come out 3-4 months from now?

Will you eat your words when you find out major vuln disclosures have been happening for decades?

Re: US summons bank bosses over cyber risks from Anthropic's latest AI model

#67

I wonder whether this kind of release of model could become the spark that ignites a new digital "cold war" between us, europe, india and china, in which they will try to outwit their rivals and compromise their critical infrastructure using artificial intelligence. Also I’d like to believe that this really is such a huge step forward compared to Opus, but lately I’ve found it hard to believe when I look at the state…

> ignites a new digital "cold war" Already been going on for over a decade - export controls on dual use technology like Xeon processors already began being enforced back in the Obama admin. > until the launch takes place It's already launched. Some companies had access to Mythos for months. > fuelling the hype This is true. Commercially available models from a year ago are already good enough from an offensive secur…

I was in the industry when key lengths for SSL were different between US domestic and US products for export. That’s one reason so much Open Source cryptography software expertise built up in Europe so quickly.

Re: US summons bank bosses over cyber risks from Anthropic's latest AI model

#68
post #3

Promoting the model as potentially dangerous might backfire with the government banning it from being released by executive order.

That's probably a contributing factor as to why they already partnered with all the biggest tech companies.

Re: US summons bank bosses over cyber risks from Anthropic's latest AI model

#69
post #35

Tangentially related, but how does one protect themselves against the bank account/brokerage being hacked? Can you print out a proof of funds/securities owned to take to court to be made whole?

Your screenshot/PDF is kind of worthless since it's trivially editable. Still a good idea to have it.

Banks are required by law to be able to produce account balances in a few days. In some countries the are required to submit them to account protection institution regularly so that if a bank fails they can quickly reimburse people to prevent panic spreading to other banks.

You can probably request some sort of notarized proof of accounts, but it will probably cost you $100.

Re: US summons bank bosses over cyber risks from Anthropic's latest AI model

#70

I hope these banks are complaining how Anthropic is preventing them from accessing their latest model and giving preferential treatment to other businesses.

At least one of those banks is already in the partnership, and we don't know how many they reached out to.
Post reply on HN