Cloudflare's CSO published findings from Project Glasswing, Anthropic's initiative giving select companies access to Claude Mythos for defensive security research. Key capabilities demonstrated include exploit chain construction (chaining primitives like use-after-free bugs into full system takeovers), proof generation (writing and running code to verify exploitability), and adversarial review (running two agents in deliberate disagreement to improve accuracy). The newsletter also covers npm package compromises, Julia Evans moving away from Tailwind, Andrej Karpathy joining Anthropic, and a JavaScript destructuring trick for grabbing first and last array elements.
14 Comments
Sort: