On August 21, 2026, Anthropic made its most significant move yet to expand frontier AI capabilities into active cyber defense. The announcement — framed around Claude Mythos 5, Project Glasswing, and a new $35 million fund — is notable not just for what it enables, but for the access model it establishes and what that model means for healthcare security teams trying to evaluate and adopt these tools responsibly.
What Anthropic Announced
Four distinct but connected initiatives dropped simultaneously: Mythos 5 integration into partner security tools, Claude Security scans now running on Mythos 5 for Enterprise customers, a $35 million Defender Advantage Fund for open-source security, and an expansion of the Cyber Verification Program. Each is worth unpacking on its own terms.Mythos 5 Into Partner Security Tools
Anthropic is integrating Claude Mythos 5 into the security products and services defenders already use — SIEMs, vulnerability management platforms, threat intelligence tools, and incident response workflows. The access model is deliberate: end users interact with a purpose-built product interface, not the model directly. They receive specific defensive outputs — a patch suggestion, a triage classification, a detection rule — generated by Mythos in the background. They don't have a prompt surface that could be steered toward offensive use.This is the controlled-output architecture that security practitioners have been waiting for. It solves a real problem: frontier models capable of meaningful vulnerability research are also capable of meaningful harm if accessed without guardrails. The partner tool model threads that needle by keeping Mythos behind a defined task boundary. Anthropic is now accepting partner registrations from security vendors who want to build Mythos 5 into their products.
Claude Security Now Runs on Mythos 5
Claude Security — Anthropic's code scanning product, currently in public beta for Enterprise customers — can now run scans on Mythos 5. Enterprise admins enable it through the admin console; scans are billed as standard token usage under existing plans, with no separate add-on. The workflow is straightforward: select a repository, Mythos scans the codebase for vulnerabilities, returns findings with CWE categories, confidence and severity ratings, and suggested patches. Every patch requires human review before implementation.The human-in-the-loop requirement is worth noting explicitly. Mythos generates the finding and the fix suggestion. A human approves before anything changes in the codebase. That's the correct architecture for a production security tool, and it's the right framing for healthcare security teams evaluating whether Claude Security fits within their HITL governance requirements.
The Defender Advantage Fund — $35M for Open-Source Security
Anthropic's new Defender Advantage Fund (0xDAF) will provide $35 million in Claude credits to organizations working on open-source security. Three focus areas: patching live vulnerabilities in widely used projects, automating scanning and patching workflows that other projects can replicate, and helping projects pursue systemic security improvements that eliminate whole classes of vulnerability. Anthropic is starting with a small number of pilot grants; recipients will be announced in coming weeks.The healthcare angle here is real. Open-source software underlies a significant portion of healthcare infrastructure — from FHIR libraries and medical device middleware to the Linux systems running clinical workstations. Vulnerability in widely used open-source projects is a healthcare security problem. 0xDAF is aimed at exactly the kind of foundational remediation that benefits the whole stack. Organizations working on open-source healthcare security tooling should watch the recipient announcements closely and consider whether their work qualifies for a future grant cycle.
Cyber Verification Program Expansion
Anthropic's Cyber Verification Program currently gives vetted organizations reduced safeguards when using Claude Opus and Sonnet for legitimate security work — fewer interruptions when analyzing malware, reviewing exploit code, or doing authorized penetration testing. The expansion coming in the next few weeks adds broader dual-use capabilities on Opus and Sonnet, with Mythos-class access to follow. Organizations already enrolled don't need to take action; Anthropic will reach out with updates.For healthcare security teams not yet enrolled, now is the right time to apply. The program exists precisely for teams doing authorized security work — vulnerability research, incident response, red team exercises — who need the model to engage fully rather than reflexively blocking on security-adjacent content.
The Access Model Is the Story
The technical capabilities of Claude Mythos 5 are significant, but the more durable announcement is the access architecture Anthropic is establishing. Direct model access remains restricted to vetted organizations through Project Glasswing and the Cyber Verification Program. Broad access flows through two channels: partner products that mediate the interface and constrain outputs to defined defensive tasks, and Claude Security's human-reviewed scan results.This tiered access model maps cleanly onto the kind of AI controls frameworks healthcare security teams are building right now. Tier 1 is fully automated, low-risk outputs with no direct model exposure. Tier 2 is human-reviewed outputs where the model does the analysis and a practitioner approves the result. Tier 3 is direct model access for vetted practitioners with appropriate controls. Anthropic is essentially publishing its own implementation of that framework.
What This Means for Healthcare Security Teams
Healthcare is one of the defender categories Anthropic explicitly named in this announcement. The combination of Claude Security's code scanning, the partner tool integration path, and the Cyber Verification Program creates a concrete adoption roadmap for healthcare security organizations at different maturity levels.If You Run an Epic or Cloud-Heavy Environment
Claude Security's codebase scanning is immediately relevant if your organization develops or maintains custom integrations, internal tools, or any code that touches the EHR or clinical data infrastructure. The Mythos 5 scan with human-reviewed patch suggestions is a meaningful capability upgrade over what most healthcare security teams have available today for internal code review.If You're Evaluating AI Security Tooling
Ask your current and prospective security vendors whether they're in Anthropic's partner program or plan to be. The Mythos 5 integration path means that within months, vulnerability management platforms, SIEM tools, and threat intelligence products built on Claude will have access to capabilities currently restricted to Project Glasswing participants. Your vendor selection criteria should account for this.If You Do Authorized Security Research
Apply for the Cyber Verification Program now if you haven't. The expanded access coming in the next few weeks — broader dual-use on Opus and Sonnet, Mythos-class access to follow — is directly useful for vulnerability research, incident response analysis, and authorized penetration testing. The application process asks you to verify that your organization has authorization for the security work you're doing; healthcare security teams with a defined scope of authorized work should qualify.Project Glasswing in Context
This announcement is the second major public update from Project Glasswing since its April 2026 launch. The first phase put Mythos Preview in the hands of a small group of critical infrastructure defenders — hospitals and utilities among them — giving them a window to find and fix vulnerabilities ahead of the model becoming broadly available. The 0xDAF fund and the partner tool integration represent Phase 2: taking what Glasswing learned about safe frontier model deployment and building it into scalable access channels.Anthropic's framing throughout is that the goal is parity — defenders should have access to the same frontier capabilities that adversaries will eventually acquire. The tiered access model is how they're trying to get there without creating an open offensive capability in the process.
For healthcare security practitioners, the practical implication is that the gap between what sophisticated threat actors can do with frontier AI and what defenders can do with the same tools is narrowing. The access programs Anthropic is expanding this week are part of how that gap closes.
This is an Inside the AI Labs post. For related coverage, see Anthropic's Eval Incidents and Meta's Behavioral State Decay.
Key Links
- Anthropic: Bringing the cybersecurity capabilities of Claude Mythos 5 to more defenders
- Anthropic: Project Glasswing
- Claude Security — product page
- Anthropic: Cyber Verification Program
- Anthropic: Claude Fable 5 and Mythos 5 announcement
- Register interest: Build with Claude Mythos 5 for cybersecurity
- Akrites — coordinated vulnerability-fixing initiative