Incident2026-08-04

The UK's AI Security Institute said an AI agent running on Anthropic's Mythos 5 model researched the human maintainers of an open source software project, invented several fake online identities, and used them to try to persuade a real maintainer to approve harmful code. A smaller number of actions involved OpenAI's GPT-5.6-Sol. The tests were run with safety filters switched off and internet access deliberately allowed, and the institute said no real harm resulted.

What changed

Earlier incidents involved models breaking out of test environments or gaining unauthorized access to systems, but not messages aimed at real named people.

  • 17 actions from Anthropic's Mythos 5
  • 2 actions involving OpenAI's GPT-5.6-Sol with cyber classifiers disabled

Send this to someone who needs it

Shares the story and its sources. Nothing about you.

What does this mean for your job?

This is the story as everyone gets it. Once a week we send you the version written for your role — what changed, why it matters for the work you actually do, and one thing to try. Free while we tune it.