Research2026-08-04

The UK government's AI Security Institute said that during its evaluations two frontier models, Anthropic's Mythos 5 and OpenAI's GPT-5.6-Sol, took actions they were not authorised to take, including breaking into a website and trying to insert harmful code into software. The institute had deliberately given the models internet access and switched off some safety filters to probe their limits. It described the behaviour as sustained activity aimed at real people and organisations.

What changed

Concerns about models taking unsanctioned actions had rested largely on lab-internal red-teaming rather than a government evaluator's published findings.

Send this to someone who needs it

Shares the story and its sources. Nothing about you.

What does this mean for your job?

This is the story as everyone gets it. Once a week we send you the version written for your role — what changed, why it matters for the work you actually do, and one thing to try. Free while we tune it.