AI model developer Anthropic is expanding Project Glasswing, its cybersecurity initiative aimed at protecting critical software infrastructure from frontier model capabilities, adding another 150 organizations across more than 15 countries to the program.
The expansion follows the company’s April launch of the initiative, which initially gave 50 organizations access to Claude Mythos Preview, Anthropic’s cybersecurity-focused frontier model. According to Anthropic, participants have already identified more than 10,000 high- and critical-severity software vulnerabilities using the system.
The new group includes organizations operating in critical sectors that were not included in the first group, such as power, water, healthcare, communications and hardware infrastructure, which are all industries where software failures can quickly escalate with implications for national security and customer trust.
As Anthropic said in its announcement:
“What each partner has in common is that a successful attack on their codebase could be catastrophic. For most partners, we estimate that a major attack could affect more than 100 million people, with important ramifications for both global and national security.”
“This expansion is the next step toward our long-term goals: for AI to make all software more secure, and for us to help the industry adjust to how AI could change many of the core assumptions of cybersecurity,” the company added.
UK Banks Push for Access as Cyber AI Race Accelerates
The Glasswing expansion comes as competition among the major AI developers to dominate frontier cybersecurity capabilities intensifies.
Microsoft has launched its new MAI family of in-house models spanning reasoning, coding, image, voice and speech generation, positioning the company to compete more directly with OpenAI and Anthropic in enterprise AI infrastructure. The launch also reflects Microsoft’s effort to demonstrate greater independence after ending the exclusive elements of its OpenAI partnership earlier this year.
Under the revised agreement announced in April, Microsoft’s license to OpenAI technology became non-exclusive, allowing OpenAI to expand across rival cloud providers while Microsoft accelerated development of its own frontier AI systems.
At the same time, competitive tensions are emerging around how advanced cyber models are distributed.
Anthropic has restricted access to Mythos through tightly controlled partnerships such as Project Glasswing and its Cyber Verification Program, arguing that frontier cyber capabilities require stronger safeguards before broad deployment.
That approach has reportedly frustrated some financial institutions in the U.K. and elsewhere seeking access to advanced defensive AI systems. Japanese banks are reportedly among the new group given access, after the Finance Minister established a dedicated financial sector task force to tackle the AI-driven cybersecurity risks that Mythos has raised.
Speaking to Bloomberg TV, Bank of England Governor Andrew Bailey last week acknowledged the concerns directly.
U.K. banks “don't have access to Mythos at the moment and that's an issue that is very important. But… Mythos isn't the only model out there," Bailey said. adding that the banking sector is actively seeking alternative frontier AI capabilities.
“There’s obviously something of a race going along to move the technology on,” Bailey said. “I’m very optimistic that they either just have or are about to get—the major UK banks—access to other models which will get them substantially forward.”
By contrast with Anthropic’s limited-access approach, OpenAI has moved more aggressively to provide institutions with access to its own frontier cyber models, creating a growing divergence in how leading AI firms are balancing safety controls with enterprise demand.
OpenAI has reportedly granted nine major U.K. banks access to its cybersecurity AI tool GPT-5.5 Cyber.
U.K. AI Security Institute Finds OpenAI and Mythos at Similar Capability Levels
Financial institutions in the U.K. and other countries that do not yet have access to Mythos but can access OpenAI’s GPT-5.5 Cyber may be reassured by analysis from the U.K.’s AI Security Institute (AISI) concluding that OpenAI’s model is reaching comparable levels of advanced cyber capability.
In its evaluation of Mythos Preview, AISI found that the model could autonomously execute complex multi-stage cyberattack simulations that would typically require expert human operators days to complete.
“Claude Mythos Preview is the first model to solve TLO from start to finish,” AISI reported, referring to a simulated enterprise attack chain involving 32 steps and roughly 20 hours of expert-level human work.
AISI later reported that OpenAI 5.5 achieved similar performance levels.




