Anthropic Claude Mythos: Automated Zero-Day Discovery vs. Enterprise Hygiene Gaps
Anthropic and Project Glasswing have demonstrated a paradigm shift in vulnerability research using the Claude Mythos Preview LLM. By employing an "LLM Search Grounding" methodology, the model autonomously identified over 10,000 zero-day vulnerabilities across major operating systems and web browsers, including a 27-year-old Denial-of-Service (DoS) flaw in OpenBSD. While this illustrates the potential for AI to automate deep-code auditing and identify legacy vulnerabilities at scale, concurrent security incidents involving three separate organizations via credential stuffing highlight a critical intelligence paradox. Organizations are increasingly vulnerable to high-velocity, AI-driven zero-day discovery while simultaneously failing to defend against primitive, identity-based attacks caused by inadequate password hygiene.