Anthropic Puts Mythos 5 in Claude Security and Launches a $35 Million Defender Fund
On August 21, 2026, Anthropic said Claude Security scans for Claude Enterprise now run on Claude Mythos 5—returning CWE category, confidence, severity, and a suggested patch without giving the user a Mythos prompt box—and launched the Defender Advantage Fund with $35 million in Claude credits for open-source vulnerability work. Cyber Verification Program expansion toward Mythos-class access is previewed.
TLDR
Anthropic on Friday, August 21, 2026 put Claude Mythos 5 behind Claude Security for Claude Enterprise (public beta): pick a repo at claude.ai/security, get findings with CWE, confidence, severity, and a suggested fix. Scans bill as standard token usage—no add-on. Interactive patching in Claude Code uses the models the org already has; Mythos does not leak onto other surfaces. Same post: Defender Advantage Fund (0xDAF) — $35 million in Claude credits for OSS patching, scan/patch automation, and ambitious hardening; small pilot grants first. Cyber Verification Program will expand dual-use access on Opus/Sonnet in coming weeks, with Mythos-class defensive access to follow. Partners can integrate Mythos so end users receive artifacts (patches, alerts), not a chat.
What shipped
| Item | Detail (claude.com/blog primary) |
|---|---|
| Date | August 21, 2026 |
| Claude Security × Mythos 5 | Enterprise public beta; admin enable in console |
| Output | CWE + confidence/severity + suggested patch; human approval required |
| Billing | Standard tokens |
| 0xDAF | $35M credits; builds on Glasswing’s $4M cash + credits |
| CVP | Reduced safeguards today on Opus/Sonnet; Mythos defensive expansion “coming weeks” |
| Partner path | Mythos in existing SOC/IR tools; register interest form |
Thesis in the post: direct model access is the risky bit; bounded defensive outputs are how Glasswing scales beyond the original small cohort. Fable 5 remains the broadly available model that blocks dual-use cyber. This is not a Mythos 5 consumer GA.
Product-line de-dupe: not Fable 5 / Mythos 5 model launch, not Project Glasswing preview, not Aug 7 Fable biology safeguards, not Aug 14 Risk Report / Model 2, not Aug 20 Platform computer-use GA.
Why this story matters
Mythos-class cyber is the capability labs will not put in a chat box. Anthropic is productizing it as scan-and-patch and partner artifacts, then paying OSS maintainers in credits. Watch: whether 0xDAF recipients are named, whether CVP Mythos access stays “defenders only,” and how this sits next to OpenAI Daybreak (Aug 10–11) on the same defensive-only idea.
Sources
- Anthropic: Bringing the cybersecurity capabilities of Claude Mythos 5 to more defenders (August 21, 2026)
- Claude Security product
- Times of AI:
openai-daybreak-gpt-5-6-cyber(August 10);anthropic-august-2026-risk-report(August 14)