Payward Uses Anthropic’s Claude Mythos 5 to Strengthen Crypto Security

TheNewsCryptoPublished on 2026-08-18Last updated on 2026-08-18

Abstract

Payward, the parent company of cryptocurrency exchange Kraken, has partnered with Anthropic's Project Glasswing to utilize the Claude Mythos 5 AI model for cybersecurity. This limited-access tool, described by Anthropic as its most powerful for cybersecurity, will be used to scan Payward's software environment for vulnerabilities, with security teams implementing necessary fixes. Access to Mythos 5 is restricted to vetted organizations due to its capability to find and potentially develop exploits. Payward also plans to alert maintainers of any valid vulnerabilities found in third-party open-source software. This move follows a past security incident at Kraken and aligns with Anthropic's data retention requirements for safety monitoring.

Payward, which is Kraken’s parent firm, has partnered with Anthropic’s Project Glasswing since Aug. 17 in cybersecurity activities. This collaboration enables Payward to have limited access to Claude Mythos 5, which is a cybersecurity AI model from Anthropic. In the coming weeks, Payward will be conducting a scan for vulnerabilities in its software environment. After reviewing the results, the security experts in the firm will sanction the implementation of any necessary corrections. The firm has not been mentioned by the firm whether Mythos 5 will scan production, isolated code, or test environments.

Mythos Accessibility is Limited Due to Risks Posed by Its Capabilities

Project Glasswing was created by Anthropic in April 2026 to provide some organizations with an opportunity to access advanced cybersecurity models earlier. At first, the project consisted of major companies representing different industries, including technology, finance, cybersecurity, and infrastructure. Anthropic added about 150 organizations from more than 15 countries to the project.

All organizations willing to access Mythos 5 should meet the security standards. Anthropic restricts access to this tool because it is capable of revealing vulnerabilities and developing exploitable components. According to the company, Mythos 5 is the most powerful tool created by Anthropic for cybersecurity and biological research. Anthropic’s security dashboard detected 1,596 vulnerabilities within 281 open-source projects by May 22. 1,900 candidates were checked by external security firms with a 90.8% true-positive rate. Researchers still have to confirm the results.

Open-Source Findings Create Security Obligations

Payward intends to alert relevant maintainers when Mythos 5 detects valid vulnerabilities in third-party open-source software. The firm has not shared any information on the timeline of such alerts or on any public release of the identified vulnerabilities. In addition, it is unclear how teams will manage projects that do not respond to any security alerts.

Payward has been involved in a previous security issue with regard to its Kraken deposit vulnerability, which was identified using outside research. This incident shows the significance of testing, validating, and communicating during a security investigation process. Anthropic’s requirement for Mythos 5 clients is the thirty-day retention of data for safety monitoring purposes. Payward has yet to clarify what data is subject to this process.

Highlighted Crypto News:
BitMart Faces Aug. 19 Deadline as Users Demand Reserve Disclosure and Repayment Plan

TagsBlockchainCryptocrypto securityCryptocurrencyPayment

Trending Cryptos

Related Questions

QWhat is the purpose of Payward's partnership with Anthropic's Project Glasswing?

AThe partnership enables Payward to have limited access to Anthropic's Claude Mythos 5 cybersecurity AI model. This collaboration will be used to conduct a scan for vulnerabilities in Payward's software environment.

QWhy does Anthropic restrict access to the Claude Mythos 5 model?

AAccess is restricted because the model is capable of revealing vulnerabilities and developing exploitable components, posing significant risks. Organizations must meet specific security standards to qualify for access.

QWhat is one specific security responsibility Payward has when Mythos 5 finds vulnerabilities in third-party open-source software?

APayward intends to alert the relevant software maintainers when valid vulnerabilities are detected in third-party open-source software.

QWhat does Anthropic require from Mythos 5 clients regarding data retention for safety monitoring?

AAnthropic requires Mythos 5 clients to retain data for thirty days for safety monitoring purposes.

QAccording to the article, what previous security issue was Payward involved in?

APayward was previously involved in a security issue related to a Kraken deposit vulnerability, which was identified through outside research.

Related Reads

US Treasury Publishes Proposed Rules for Regulating Stablecoins Under GENIUS Act

The U.S. Treasury Department has published a notice of proposed rulemaking (NPRM) to implement the stablecoin provisions of the GENIUS Act. The rules detail who can issue "payment stablecoins" in the U.S. and under what conditions, with the law set to take effect on January 18, 2027. A key proposal defines the "issuance" of a stablecoin not at token creation, but at its first transfer to a user. Issuance is deemed to occur in the U.S. if either the issuer or the recipient is physically located there at that moment, regardless of citizenship. The framework allows foreign issuers to operate in the U.S. if they meet specific criteria, including comparable home-country regulation and registration with the OCC. They can avoid liability for accidental U.S. distribution with reasonable location verification procedures and by not marketing to the U.S. market. Liability for an illegal issuance may extend beyond the issuer to entities facilitating key steps like redemption, token creation, initial distribution, or providing primary market access, potentially including exchanges. The proposal addresses atypical distributions, stating that free airdrops to U.S. persons may constitute issuance. Rules for crypto asset service providers will phase in, with a ban on offering unlicensed stablecoins to U.S. persons starting July 18, 2028. The Treasury is soliciting comments on several open questions, including treatment of cross-chain bridges and wrapped assets, and is considering stricter liability models or exemptions for small transactions. Public comments will be accepted for 60 days after official publication.

cryptonews.ruJust now

US Treasury Publishes Proposed Rules for Regulating Stablecoins Under GENIUS Act

cryptonews.ruJust now

Trading

Spot

Hot Articles

Discussions

Welcome to the HTX Community. Here, you can stay informed about the latest platform developments and gain access to professional market insights. Users' opinions on the price of S (S) are presented below.

活动图片