
The information displayed in the AIM should not be reported as representing the official views of the OECD or of its member countries.
Anthropic's advanced AI model, Mythos, identified over 10,000 critical software vulnerabilities in 30 days, including preventing a $1.5 million bank fraud. Its unprecedented capabilities alarmed global tech and financial sectors, prompting the European Central Bank to urge rapid security upgrades and Anthropic to indefinitely restrict public access due to potential misuse risks.[AI generated]
Why's our monitor labelling this an incident or hazard?
The event involves the use of an AI system (Mythos) designed to detect security vulnerabilities, which is directly related to cybersecurity risk management in the banking sector. Although no realized harm or incident has been reported, the article clearly states that the AI system's capabilities could plausibly lead to attacks on critical infrastructure if vulnerabilities are exploited. The ECB's urgent call to action and warnings about the rapid discovery of vulnerabilities by AI underline the credible risk of future harm. Therefore, this event qualifies as an AI Hazard, as it concerns a plausible future risk stemming from the use and potential misuse of an AI system in a critical domain.[AI generated]