← X

Since June 12, we’ve been working closely with the US government to restore acce

X · AnthropicAI · June 26, 2026
Since June 12, we’ve been working closely with the US government to restore access to Claude Mythos 5 and Fable 5. Today, the government notified us that Mythos 5, our strongest cybersecurity model, can be redeployed to a set of US organizations that operate

Detailed Analysis

Anthropic's disclosure reveals a previously unreported five-week period during which two of its models, Claude Mythos 5 and Fable 5, had their access restricted, apparently at the direction of the US government. According to the brief update, the restriction began around June 12, and Anthropic has now received word that Mythos 5, described as the company's most capable cybersecurity model, can be redeployed to a defined set of US organizations responsible for operating and defending critical infrastructure. The framing suggests this was not a voluntary pause by Anthropic but rather an externally imposed limitation, one the company says it has been "working closely" with federal authorities to resolve.

The specifics matter because Mythos 5's designation as a top-tier cybersecurity model places it squarely within the category of dual-use AI systems that national security agencies have grown increasingly focused on. A model capable of identifying vulnerabilities, writing exploit code, or automating penetration testing at a high level of sophistication carries obvious value for defenders of critical infrastructure, but the same capabilities could be weaponized by malicious actors if the model or its outputs were misused or leaked. Restricting deployment to vetted organizations that "operate and defend" critical infrastructure, rather than releasing the model broadly, indicates a controlled-access approach similar to how governments have historically handled sensitive technologies with both defensive and offensive potential, such as certain cryptographic tools or advanced surveillance software.

This episode also illustrates a broader shift in how frontier AI labs interact with the US government. Rather than simply publishing capability disclosures after the fact, Anthropic appears to now be operating within a framework where specific model releases, particularly those with cyber-offensive or cyber-defensive capability, are subject to government review and potential restriction before or during deployment. This mirrors dynamics already seen in export controls on advanced semiconductors and is consistent with the Biden and subsequent administrations' broader posture toward AI systems deemed to pose national security risks. It also reflects Anthropic's own public commitments, articulated through its Responsible Scaling Policy, to treat certain capability thresholds, especially in cybersecurity and other CBRN-adjacent domains, as requiring extra safeguards, third-party evaluation, or restricted release even when the company believes a model is technically ready for wider use.

More broadly, this incident signals that frontier AI governance is increasingly becoming a negotiated, ongoing relationship between AI developers and federal agencies rather than a one-time approval process. The fact that access was suspended for over a month before partial restoration suggests real friction and deliberation behind the scenes, likely involving assessments of misuse risk, safeguards, and vetting criteria for which organizations qualify as legitimate critical-infrastructure defenders. As AI models grow more capable in cybersecurity, biosecurity, and other high-stakes domains, this kind of case-by-case, government-mediated deployment is likely to become more common, with implications for how quickly powerful capabilities reach the market, who gets privileged access, and how transparent AI companies are expected to be about behind-the-scenes regulatory interactions that shape which models the public and enterprises can actually use.

Read original article →