Live data from Hacker News

New serious vulnerabilities spiked around release of Claude Mythos Preview

epoch.ai

81–82 of 82 posts

Re: New serious vulnerabilities spiked around release of Claude Mythos Preview

#81

This is hardly news? We've known for months that a flood of AI-assisted vulnerabilities was coming; I posted on Twitter in March calling 2026 the year of a million CVEs: https://x.com/i/status/2035045573116789002

It's also unclear what's cause and what's effect. Given the massive amount of overhyped scaremongering around Mythos, it could just mean that people ran their code through some other AI, or even just panicked and started taking security a bit more seriously without any AI involved. That was certainly the case at one company I know of, the mgt. suddenly pushed some resources towards identifying security issues.

Re: New serious vulnerabilities spiked around release of Claude Mythos Preview

#82

Earlier quoted context omitted.

Wouldn't open source enable review from people with access to the scanners prior to release? Seems like there is a fair chance that it will mostly be an actual spike, where's a bunch of existing vulnerabilities get cleaned up and then published software mostly has less vulnerabilities going forward.

Agreed. But this depends on (at least) 1 condition: that no new bugs are introduced. FLOSS projects keep moving forward, and it seems some project's maintainers are being swamped by PRs (some good, some bad). Whatever allows random 3rd party to 'strip-mine' existing codebases for bugs, should also be applied to new code.

Yes, "prior to release".
Post reply on HN