Field note
Anthropic moved Claude Mythos 5 into Claude Security on 21 August and said it will reach partners' cyber defence tools soon, alongside a $35M fund for open-source software security and an expansion of its Cyber Verification Program. The sequencing matters more than the model: since April, Project Glasswing had confined Mythos-class capability to a small group of organisations defending critical software, deliberately giving defenders a window to find and fix vulnerabilities before comparable capability became generally available or reached malicious actors.
What changed is the gate rather than the capability. Anthropic describes safety classifiers and safeguards that let Mythos-class access widen without handing over offensive cyber work, with Claude Fable 5 as the first step: broadly available while dual-use cyber work stayed blocked. The staged rollout treats a model's offensive potential as an access-control problem to be managed inside product surfaces, not as a property to be published and hoped about.
That framing connects to a boundary this site has tracked before, because containment for cyber-capable agents is never one wall: VM isolation is only one of those boundaries, and distribution through a security product with named partners is a different control point from a public API. The agent security hub is where those control points accumulate.
This is a vendor announcement: it states availability, a fund, and programme intent, not measured defensive outcomes. The condition to watch is whether the Cyber Verification Program publishes what a verified defender must satisfy, because access gated by a classifier is only auditable when the entry criteria are visible.