Discord Sleuths Gained Unauthorized Access to Anthropic’s Mythos

Anthropic's carefully restricted Mythos AI vulnerability-detection tool was accessed by unauthorized Discord users through relatively simple means—exploiting a prior data breach and leveraging existing contractor credentials—highlighting critical gaps in AI model access control and supply chain security. This incident, combined with concurrent threats including North Korean hackers weaponizing AI, telecom surveillance exploits, and massive health data breaches, demonstrates that organizations face escalating risks from both external threat actors and inadequate security governance over sensitive digital assets. IT leaders must urgently reassess their access controls, third-party contractor permissions, and breach response protocols, as the democratization of powerful AI tools increases the attack surface for both defensive and offensive capabilities.

Read full article
Discord Sleuths Gained Unauthorized Access to Anthropic’s Mythos
Plus: Spy firms tap into a global telecom weakness to track targets, 500,000 UK health records go up for sale on Alibaba, Apple patches a revealing notification bug, and more.