U.S. Government Bans Foreign Nationals from Using Fable 5, Anthropic Issues Rebuttal

链捕手Publié le 2026-06-13Dernière mise à jour le 2026-06-13

Résumé

U.S. Government Bans Foreign Access to Fable 5, Anthropic Issues Rebuttal On June 12th, the U.S. government ordered AI company Anthropic to immediately suspend all foreign access—including foreign nationals within the U.S. and Anthropic's own foreign employees—to its newly released Fable 5 and Mythos 5 AI models, citing national security concerns. This forced Anthropic to temporarily disable access to both models for all users globally, as it cannot technically differentiate user nationality at scale. The models, released just three days prior, represent Anthropic's highest public capability tier. Fable 5 is the first publicly available model from the advanced "Mythos" family, while Mythos 5 is a less-restricted version for approved cybersecurity and critical infrastructure partners. The government's directive was reportedly triggered by claims from another company that it could "jailbreak" Mythos 5, raising alarm within the Trump administration. Anthropic, in a detailed public statement, strongly challenged this rationale. The company argues the demonstrated "jailbreak" is a narrow, non-generalized technique that merely involves identifying minor, known software vulnerabilities—a capability common to other publicly available models like OpenAI's GPT-5.5 and routinely used by cybersecurity defenders. Anthropic stated it has complied with the order but disagrees with the government's standard, warning that applying it industry-wide would halt all new frontier model deploym...

Author: Xiong Lei

Editor: Xu Qingyang

On June 12th, U.S. time, a rare direct confrontation between government and industry in the history of AI regulation erupted abruptly this Friday.

The U.S. government, citing national security concerns, issued an export control directive to Anthropic, demanding the immediate suspension of all access to the Fable 5 and Mythos 5 AI models by foreign entities. The directive's scope is extremely broad, applying not only to foreign users outside the United States but also to foreign citizens within U.S. territory, even including foreign employees within Anthropic itself.

As a compliance measure, Anthropic had to shut down access to these two models for all users—the only feasible solution currently available to ensure compliance, as the company lacks the technical capability to precisely distinguish between "foreign entity" and "U.S. citizen" user groups. Access to the company's other models remains unaffected, with users automatically falling back to Claude Opus 4.8.

This emergency suspension came as a sudden shock. Fable 5 and Mythos 5 were officially released on June 9th, only three days prior. The abrupt removal of these two models has caused widespread reverberations within the tech industry and AI community.

01 What Exactly Are These Two Models?

To understand the core tension of this incident, one must first understand what kind of models Fable 5 and Mythos 5 are, and why they have been under the regulatory spotlight from the beginning.

Mythos is a new model family from Anthropic that sits at a higher capability tier than the Opus series, representing the highest capability level currently deployable by Anthropic for public use. The first Mythos-class model, Claude Mythos Preview, was released in April this year through the "Project Glasswing" initiative, with access strictly limited to a select few partners, citing its overly powerful capabilities in cybersecurity as unsuitable for broad release.

Fable 5 is the first Mythos-level model officially released to the general public, surpassing all previously available models from Anthropic in capabilities, achieving top-tier industry benchmarks in nearly all tests, including software engineering, knowledge work, visual understanding, and scientific research.

To enable public release, Anthropic equipped Fable 5 with dedicated safety guardrails—in high-risk areas such as cybersecurity, biology, and chemistry, the model automatically blocks responses and falls back to Claude Opus 4.8 for processing.

Mythos 5 is a version built on the same underlying model but with fewer safety guardrails, available only to approved institutions that previously had access to Project Glasswing. It is positioned as a professional tool for cybersecurity defenders and critical infrastructure operators. Both models are priced identically at $10 per million input tokens and $50 per million output tokens.

02 The Trigger for the Directive

According to reports, U.S. Secretary of Commerce Howard Lutnick sent a letter to Anthropic CEO Dario Amodei (Dario Amodei) on June 12th, announcing that Mythos 5 and Fable 5 would be subject to export controls. The immediate trigger for this decision was a claim from another company that it could "jailbreak" Mythos, alerting the Trump administration to potential national security risks.

It is reported that the Trump administration had previously attempted to prevent Anthropic from releasing these two models but was unsuccessful—prompting the subsequent, more forceful measure of export controls.

Faced with this sudden directive, Anthropic, while complying with its execution, issued an unusually strongly worded, lengthy statement, systematically rebutting the government's rationale.

Anthropic argues that the government's evidence of a "jailbreak" pertains only to a very narrow, non-generalizable attack method. Essentially, it involves instructing the model to read a specific code repository and fix software vulnerabilities within it—a capability that also exists in other publicly available models, including OpenAI's GPT-5.5, and is used daily by cybersecurity defenders for normal system maintenance.

Anthropic explicitly stated in its declaration that if "the existence of a limited-scope potential jailbreak" were to become the standard for recalling already-deployed commercial models, it would effectively bring all new deployments of frontier models across the entire industry to a halt. The company also emphasized that this government action did not follow the transparent, fair, and technically fact-based legal procedures it had previously publicly called for.

Anthropic stated it would comply with the government's lawful directive while actively engaging in communication with the government to work towards restoring access as soon as possible, promising to release more technical details within the next 24 hours. The company believes this incident stems from a misunderstanding and deeply apologizes for the inconvenience caused to users.

The following is the full text of the statement released by Anthropic, titled "Statement Regarding the U.S. Government's Directive to Suspend Access to Fable 5 and Mythos 5":

The U.S. government, citing national security authority, issued an export control directive requiring the suspension of access to Fable 5 and Mythos 5 for all foreign nationals, regardless of whether they are inside or outside the United States, including foreign employees of Anthropic. The practical effect of this directive is: we must immediately shut down Fable 5 and Mythos 5 for all users to ensure compliance. Other Anthropic models are unaffected.

We received this directive at 5:21 PM Eastern Time today. The letter did not specify the specific national security concerns. To our understanding, the government believes it possesses a method to bypass Fable 5's safety guardrails, referred to as a "jailbreak" technique. We reviewed a demonstration of this technique and found it only capable of identifying a small number of previously known, low-impact vulnerabilities. These vulnerabilities are all relatively simple; other publicly available models can identify the same issues without requiring a jailbreak.

In our Fable launch blog post, Anthropic articulated our position regarding its safety guardrails, as follows:

We have established robust safety guardrails that significantly reduce the likelihood of Fable being misused for cybersecurity-related tasks, among others. In fact, some users have reported that our guardrails are overly strict.

For weeks prior to Fable's launch, Anthropic collaborated with the U.S. government, the UK's AI Safety Institute, multiple third-party organizations, and internal teams, conducting cumulative thousands of hours of red-teaming on Fable's safety guardrails. The results showed that Fable's safety guardrails were markedly more effective than those of any previously deployed model.

To date, no testers have been able to find a "generalized jailbreak" method—that is, a jailbreak capable of comprehensively breaching the model's safety guardrails and unlocking a wide range of cyberattack capabilities.

We believe that, currently, no model provider can achieve perfect jailbreak protection. All guardrail mechanisms in the industry are susceptible to being bypassed by "non-generalized jailbreaks" (i.e., obtaining limited cyber information under specific circumstances), and generalized jailbreak methods may also emerge in the future. We made this clear at the time of Fable 5's launch.

Given that perfect jailbreak protection is currently infeasible, Anthropic adopted a defense-in-depth strategy for Fable 5. Our goal is to make jailbreak attacks either extremely narrow in scope (for non-generalized jailbreaks) or prohibitively expensive (for generalized jailbreaks), complemented by comprehensive monitoring to quickly detect and contain any successful attacks. This is also the reason Anthropic requires customer data retention for 30 days—although this policy has real impacts on our customer relationships, it aids our research and response to jailbreak risks.

We stand by this defense-in-depth strategy. It effectively reduces the risks posed by Fable to a level comparable with existing deployed models in the industry.

To date, we have not even received any formal disclosure regarding a non-generalized jailbreak that could lead to harmful consequences. The potential jailbreak cases disclosed to us are either entirely harmless or constitute only minor findings that do not demonstrate capabilities exclusive to Mythos.

Currently, the U.S. government has only provided us with verbal evidence regarding a potential, limited-scope, non-generalized jailbreak method. Its essence is instructing the model to read a specific code repository and fix software vulnerabilities within it. To our knowledge, this potential jailbreak method has been shared with the government. We reviewed a report—which we believe forms the basis for the government's directive—and have verified that the level of capability demonstrated in the report is similarly prevalent in other models (including OpenAI's GPT-5.5) and is used daily by cybersecurity defenders to maintain system security. We will release more details within the next 24 hours.

We will comply with the government's lawful directive and shut down access to Fable 5 and Mythos 5 for all users. However, we do not agree that the discovery of a limited-scope potential jailbreak method is sufficient grounds to recall a commercial model already deployed to hundreds of millions of users. Applying this standard across the industry would effectively bring all new model deployments by frontier model providers to a complete standstill.

We have publicly stated that governments should have the authority to prevent the deployment of unsafe models based on transparent, fair, clear, and technically fact-based legal procedures. This action did not adhere to those principles.

We deeply apologize for the inconvenience caused to our users. We believe this incident stems from a misunderstanding and are actively working to restore access as soon as possible.

Questions liées

QWhat was the core reason given by the U.S. government for imposing export controls on Anthropic's Fable 5 and Mythos 5 AI models?

AThe U.S. government cited national security concerns as the core reason. The decision was triggered by another company's claim of a potential "jailbreak" method against the Mythos model, which raised alarms within the Trump administration about potential security risks.

QWhat immediate action did Anthropic take in response to the U.S. government's export control directive regarding Fable 5 and Mythos 5?

AIn compliance with the directive, Anthropic immediately shut down access to both the Fable 5 and Mythos 5 models for all users globally. This was because the company's technical systems could not precisely distinguish between "foreign persons" and "U.S. citizens." Access to their other models, like Claude Opus 4.8, remained unaffected.

QWhat is the main argument in Anthropic's rebuttal statement against the government's rationale for the export controls?

AAnthropic argues that the potential jailbreak method cited by the government is extremely narrow and non-generalized. The company claims the demonstrated ability (analyzing a codebase to fix software bugs) is common in other publicly available AI models, including OpenAI's GPT-5.5, and is routinely used by cybersecurity defenders for legitimate system maintenance. They contend that using this as a standard would halt all new deployments of frontier models across the industry.

QWhat distinguishes the Fable 5 model from the Mythos 5 model as described in the article?

AFable 5 is the first publicly released model from Anthropic's higher-tier Mythos family. It has strong safety guardrails that automatically block responses in high-risk areas like cybersecurity, biology, and chemistry. Mythos 5, based on the same underlying model, is a version with fewer safety restrictions, intended as a professional tool accessible only to pre-approved organizations, such as cybersecurity defenders and critical infrastructure operators.

QAccording to Anthropic, what key principle was lacking in the government's action to impose the export controls?

AAnthropic stated that the government's action did not follow the principles of a transparent, fair, clearly-defined, and technically-grounded statutory process. The company believes it has the right, based on such a proper process, to block unsafe model deployments, but argues this specific action lacked that due process.

Lectures associées

La Corée du Sud se prépare à réguler les transferts cryptographiques transfrontaliers dans le cadre d'un nouveau système

La Corée du Sud prévoit d'inclure les entreprises de fintech dans son nouveau cadre d'autorisation pour les transferts d'actifs virtuels, qui doit entrer en vigueur en décembre. Cette décision suit l'introduction d'une période de grâce de six mois dans l'amendement de la loi sur les transactions de change. À partir de décembre, les entreprises effectuant des transferts transfrontaliers via des actifs virtuels devront s'enregistrer auprès du ministère de l'Économie et des Finances et déclarer leurs transactions via le système de déclaration des changes coréen. Ce cadre réglementaire vise à placer ces transferts sous surveillance officielle, les autorités ayant constaté que de nombreux transferts d'actifs numériques échappaient au contrôle des changes, présentant des risques de blanchiment d'argent et d'activités criminelles. Initialement, les règles s'appliquaient principalement aux plateformes d'échange de cryptomonnaies. Cependant, les régulateurs sud-coréens envisagent désormais d'élargir le champ des entités éligibles pour inclure des acteurs non traditionnels, comme les fintechs, si elles peuvent effectuer ces transferts de manière efficace. Le ministère et la Banque de Corée collaborent avec les acteurs du secteur pour finaliser les règles d'application avant le lancement en décembre. Cette initiative s'inscrit dans un contexte plus large de renforcement de la supervision des actifs numériques par la Corée du Sud, qui travaille également sur une réglementation pour les produits financiers tokenisés.

TheNewsCryptoIl y a 1 h

La Corée du Sud se prépare à réguler les transferts cryptographiques transfrontaliers dans le cadre d'un nouveau système

TheNewsCryptoIl y a 1 h

Microsoft identifie un nouveau logiciel malveillant ciblant les adresses de portefeuille et les clés privées

En février 2026, Microsoft Threat Intelligence a découvert une nouvelle campagne de malware ciblant les cryptomonnaies, identifiée sous le nom de Trojan/CryptoBandits.A. Ce logiciel malveillant, propagé via des fichiers .lnk malveillants sur des clés USB, opère sans installer ni serveur de commande classique. Il utilise l'hôte de script Windows et une technologie ActiveX pour déployer un proxy Tor, permettant une connexion discrète aux serveurs des attaquants via un service caché Tor. Une fois installé, le malware déploie deux modules : l'un pour sa propagation et l'autre agissant comme un "clipper" et voleur d'informations. Il surveille en permanence le presse-papier pour y déceler des phrases de récupération (de 12 ou 24 mots), des clés privées Bitcoin/Ethereum et des adresses de portefeuille. Lorsqu'un utilisateur copie une adresse pour effectuer une transaction, le malware la remplace silencieusement par une adresse contrôlée par les attaquants. De plus, le malware capture des captures d'écran qu'il envoie via Tor, permettant aux cybercriminels d'évaluer les soldes et activités des victimes. Il dispose également de capacités d'exécution de code à distance et assure sa persistance via des tâches planifiées. Microsoft recommande aux organisations de désactiver l'exécution automatique, de restreindre les interpréteurs de script et les raccourcis exécutables depuis les périphériques USB, et de surveiller toute activité suspecte liée à l'exécution de JavaScript, aux proxys locaux (port 9050), ou à la surveillance du presse-papier. Cette campagne illustre l'adaptation continue des menaces à l'essor des cryptomonnaies.

TheNewsCryptoIl y a 1 h

Microsoft identifie un nouveau logiciel malveillant ciblant les adresses de portefeuille et les clés privées

TheNewsCryptoIl y a 1 h

Sans équipe commerciale, un chiffre d'affaires de 20 millions de dollars : comment Viktor, l'employé IA, a-t-il séduit 30 000 entreprises ?

Sans équipe commerciale, le produit Viktor, un « employé IA », génère 20 millions de dollars de revenus annuels auprès de plus de 30 000 entreprises. Fondé par une équipe issue de DeepMind, Viktor se présente comme un « collègue IA de niveau 3 » capable d'exécuter des tâches de bout en bout, et non un simple assistant. Son utilisation est simplifiée : via une mention @ dans Slack ou Microsoft Teams, les employés peuvent lui demander en langage naturel d'effectuer des tâches complexes, comme générer un rapport ou réaliser un rapprochement comptable, sans avoir besoin de maîtriser l'ingénierie des prompts. Le succès repose sur un modèle de croissance tiré par le produit (PLG) et une tarification basée sur la consommation de crédits pour les tâches, réduisant les coûts d'essai. Viktor permet également une automatisation proactive, exécutant des processus comme la génération de présentations en croisant plusieurs outils. Son intégration à Teams, avec 320 millions d'utilisateurs, marque une étape vers une adoption à grande échelle, mais soulève aussi des défis majeurs : la conformité dans les grandes entreprises, les risques d'erreur dus à la boîte noire des décisions de l'IA, et la nécessité de gagner la confiance via une gouvernance robuste (journaux d'audit, permissions). L'équilibre entre efficacité automatisée et contrôle restera crucial pour son adoption dans les flux métiers essentiels.

marsbitIl y a 2 h

Sans équipe commerciale, un chiffre d'affaires de 20 millions de dollars : comment Viktor, l'employé IA, a-t-il séduit 30 000 entreprises ?

marsbitIl y a 2 h

Entretien avec les cofondateurs de CoreWeave, « action liée à Nvidia » : La demande d'IA semble s'intensifier chaque jour

Interview des dirigeants de CoreWeave : La demande d'IA semble « s'intensifier » quotidiennement CoreWeave, leader des services cloud de nouvelle génération (neocloud), a récemment partagé ses perspectives sur le marché de l'infrastructure IA. Ses dirigeants, Brannin McBee et Nick Robbins, soulignent que la demande ne faiblit pas ; au contraire, elle s'accentue chaque jour, portée par l'essor des agents IA, du raisonnement et des applications d'inférence en entreprise. Ils observent un changement structurel : le goulot d'étranglement ne se limite plus aux GPU. L'attention se porte désormais sur des défis d'infrastructure plus larges : la disponibilité des centres de données (powered shells), l'approvisionnement en CPU, en mémoire HBM, en stockage, ainsi que les capacités d'exécution de la chaîne logistique. CoreWeave, qui sert des clients majeurs comme OpenAI, Anthropic et Meta, constate une demande croissante pour les CPU (notamment les futurs Vera CPU de NVIDIA) et le stockage, nécessitant une refonte des conceptions de data centers. La différenciation de CoreWeave réside dans son excellence opérationnelle, sa rapidité de déploiement et ses performances validées par des tiers. Son modèle commercial, basé sur des contrats à long terme, lui permet de protéger ses marges en répercutant les coûts des composants comme la mémoire HBM. Le déploiement à grande échelle des nouvelles plates-formes comme Vera Rubin (VR) devrait suivre un calendrier similaire à celui des systèmes GB200, avec une accélération majeure attendue en 2027. En résumé, la course à l'infrastructure IA évolue d'une simple acquisition de puces vers une capacité globale à livrer des systèmes complexes de manière fiable et à grande échelle.

marsbitIl y a 2 h

Entretien avec les cofondateurs de CoreWeave, « action liée à Nvidia » : La demande d'IA semble s'intensifier chaque jour

marsbitIl y a 2 h

Trading

Spot
Futures
活动图片