Project Glasswing finds 10,000 critical flaws in month
Anthropic shared an initial update on Project Glasswing, an initiative using the unreleased Claude Mythos model to secure critical software. The agentic AI identified over 10,000 high-severity vulnerabilities across open-source and enterprise codebases within its first month.
AI-driven vulnerability discovery has outpaced human patching capacity, shifting the security bottleneck entirely to remediation.
- –The Claude Mythos model found a 27-year-old flaw in OpenBSD and a 16-year-old flaw in FFmpeg that survived decades of human audits
- –Anthropic is withholding general release of the model to prevent asymmetric attacker advantages, sharing it only with 50 vetted partners
- –The sheer volume of discoveries highlights an urgent need for automated patching workflows, as human maintainers cannot triage this many issues
- –Alongside the update, Anthropic launched Claude Security in beta to help enterprise teams scan for issues during the commit process
DISCOVERED
5h ago
2026-05-23
PUBLISHED
13h ago
2026-05-22
RELEVANCE
AUTHOR
louiereederson
