Three decades of failed attempts to restrict cybersecurity software exports — from encryption to spyware — anchor TechCrunch's skeptical take on controlling AI tools. Anthropic's Mythos, a model trained specifically for cybersecurity tasks, has renewed the policy debate. The article argues export controls are structurally ill-suited to dual-use technologies and will prove as ineffective with AI as they did with their predecessors.
Cloudflare is celebrating the 12th anniversary of Project Galileo, its program delivering free enterprise-grade cybersecurity to at-risk civil society organizations worldwide. To commemorate the milestone, the company has published its first comprehensive report analyzing cyberattacks targeting nonprofits, journalists, human rights groups, and similar organizations. The report offers rare, systematic visibility into the threat landscape facing civil society infrastructure, a segment chronically underrepresented in mainstream security research.
A June 2026 Ars Technica commentary argues that AI models with advanced hacking capabilities are not a distant or preventable future — they are an imminent norm. The piece challenges the implicit optimism behind regulatory frameworks and voluntary industry commitments, suggesting these safeguards are insufficient to halt the trajectory. For developers, security practitioners, and policymakers, the framing is a call to plan for a world where dangerous AI capabilities are widespread, not to prevent it from arriving.
A security researcher disclosed a critical broken access control vulnerability in FIFA's internal World Cup broadcast system. Because the backend API performed no authorization verification, any registered user could gain full administrative access to the live broadcast backend. This would have allowed modification of real-time video streams and match data; FIFA says the flaw has since been patched.
A coalition of cybersecurity professionals has formally protested a US government export control ban on Anthropic's most capable models — Fable and Mythos — calling it 'dangerous.' The experts argue the restrictions will hamper defenders' ability to secure critical software and products. The letter signals growing practitioner pushback against AI export policies that critics say create asymmetric disadvantages for those working to defend against sophisticated cyber threats.
Cloudflare introduces its defense architecture under Project Glasswing, arguing that robust architectural defense around vulnerabilities is more critical than patching speed. By acting as its own "customer zero," Cloudflare demonstrates how to mitigate autonomous frontier cyber models through edge-based isolation, zero-trust principles, and proactive traffic filtering.
Cloudflare customers can now apply Cloudforce One threat intelligence inside the WAF to block high-risk traffic. New cf.intel fields let security teams automate protections based on specific threat actors and targeted industries. The update turns threat indicators into real-time enforcement signals, reducing the gap between intelligence and active blocking.
According to investigative outlet 404 Media, evidence suggests the U.S. military has repurposed the Global Positioning System (GPS) into a modern "numbers station." By embedding encrypted data within standard GPS broadcasts, the military can securely transmit covert messages to agents or assets worldwide. This technique leverages existing satellite infrastructure to achieve global coverage with near-perfect receiver anonymity.
Anthropic introduced Project Glasswing after Claude Mythos Preview showed the ability to rapidly find high-risk vulnerabilities and generate connected attack commands. Trend Micro’s TrendAI has joined the framework, becoming the first Taiwanese cybersecurity vendor to do so. The article frames the move around Taiwan’s strategic AI hardware role and a new defensive logic: using AI to counter malicious AI.
TechCrunch reports that cybersecurity company Cyera is nearing a $300 million funding round led by Evolution Equity Partners. The deal could value the company at around $12 billion, or roughly 80 times ARR. The report highlights that this high valuation is being pursued despite operating losses, underscoring investor appetite for fast-growing cybersecurity businesses.
President Donald Trump signed an executive order establishing a voluntary framework for AI companies. Companies may share frontier models with the federal government before public release. The order frames the initiative as a way to promote secure innovation and strengthen cybersecurity for critical infrastructure, while avoiding measures that stifle the US AI industry.
Anthropic is expanding its Project Glasswing security vulnerability program and access to Mythos. The rollout covers 150 organizations across 15 countries, focusing on power, water, healthcare, and communications infrastructure. The company is targeting sectors where a cyberattack could affect as many as 100 million people, although implementation details and participating organizations were not disclosed in the provided text.
INSIDE examines how China’s Amap has become controversial in Taiwan beyond ordinary mapping or navigation use. The article says its service relies on user data and AI-based inference rather than full official data integrations. That model could send movement traces and behavioral signals back to China, creating risks for hybrid warfare intelligence, influence operations, and Taiwan’s broader governance of map data and digital infrastructure.
This issue of Import AI 457, written by Jack Clark, delves into three forward-looking and stylistically distinct topics in the field of artificial…
According to a report by Ars Technica, corporate bug bounty programs are currently being bombarded with an "endless" stream of AI-generated junk reports (AI…
As artificial intelligence (AI) technology undergoes explosive growth, cybersecurity has become a focal point of concern for governments and enterprises…
This issue of Import AI 452, written by Jack Clark, takes a deep dive into the far-reaching impact of artificial intelligence on three major areas: national…
In this issue of Import AI 450, author Jack Clark explores three key topics with profound implications for the future of technology, security, and geopolitics…
In this issue of Import AI 442, Jack Clark raises a core fundamental question: "Will the arrival of superintelligence be an instantaneous 'phase change,' or a…
In this issue of Import AI 438, Jack Clark examines two key issues concerning AI security and privacy: **1. You Are Your LLM History** As large language models…