U.S. Government Bans Foreign Nationals from Using Fable 5, Anthropic Issues Rebuttal

链捕手Publicado em 2026-06-13Última atualização em 2026-06-13

Resumo

U.S. Government Bans Foreign Access to Fable 5, Anthropic Issues Rebuttal On June 12th, the U.S. government ordered AI company Anthropic to immediately suspend all foreign access—including foreign nationals within the U.S. and Anthropic's own foreign employees—to its newly released Fable 5 and Mythos 5 AI models, citing national security concerns. This forced Anthropic to temporarily disable access to both models for all users globally, as it cannot technically differentiate user nationality at scale. The models, released just three days prior, represent Anthropic's highest public capability tier. Fable 5 is the first publicly available model from the advanced "Mythos" family, while Mythos 5 is a less-restricted version for approved cybersecurity and critical infrastructure partners. The government's directive was reportedly triggered by claims from another company that it could "jailbreak" Mythos 5, raising alarm within the Trump administration. Anthropic, in a detailed public statement, strongly challenged this rationale. The company argues the demonstrated "jailbreak" is a narrow, non-generalized technique that merely involves identifying minor, known software vulnerabilities—a capability common to other publicly available models like OpenAI's GPT-5.5 and routinely used by cybersecurity defenders. Anthropic stated it has complied with the order but disagrees with the government's standard, warning that applying it industry-wide would halt all new frontier model deploym...

Author: Xiong Lei

Editor: Xu Qingyang

On June 12th, U.S. time, a rare direct confrontation between government and industry in the history of AI regulation erupted abruptly this Friday.

The U.S. government, citing national security concerns, issued an export control directive to Anthropic, demanding the immediate suspension of all access to the Fable 5 and Mythos 5 AI models by foreign entities. The directive's scope is extremely broad, applying not only to foreign users outside the United States but also to foreign citizens within U.S. territory, even including foreign employees within Anthropic itself.

As a compliance measure, Anthropic had to shut down access to these two models for all users—the only feasible solution currently available to ensure compliance, as the company lacks the technical capability to precisely distinguish between "foreign entity" and "U.S. citizen" user groups. Access to the company's other models remains unaffected, with users automatically falling back to Claude Opus 4.8.

This emergency suspension came as a sudden shock. Fable 5 and Mythos 5 were officially released on June 9th, only three days prior. The abrupt removal of these two models has caused widespread reverberations within the tech industry and AI community.

01 What Exactly Are These Two Models?

To understand the core tension of this incident, one must first understand what kind of models Fable 5 and Mythos 5 are, and why they have been under the regulatory spotlight from the beginning.

Mythos is a new model family from Anthropic that sits at a higher capability tier than the Opus series, representing the highest capability level currently deployable by Anthropic for public use. The first Mythos-class model, Claude Mythos Preview, was released in April this year through the "Project Glasswing" initiative, with access strictly limited to a select few partners, citing its overly powerful capabilities in cybersecurity as unsuitable for broad release.

Fable 5 is the first Mythos-level model officially released to the general public, surpassing all previously available models from Anthropic in capabilities, achieving top-tier industry benchmarks in nearly all tests, including software engineering, knowledge work, visual understanding, and scientific research.

To enable public release, Anthropic equipped Fable 5 with dedicated safety guardrails—in high-risk areas such as cybersecurity, biology, and chemistry, the model automatically blocks responses and falls back to Claude Opus 4.8 for processing.

Mythos 5 is a version built on the same underlying model but with fewer safety guardrails, available only to approved institutions that previously had access to Project Glasswing. It is positioned as a professional tool for cybersecurity defenders and critical infrastructure operators. Both models are priced identically at $10 per million input tokens and $50 per million output tokens.

02 The Trigger for the Directive

According to reports, U.S. Secretary of Commerce Howard Lutnick sent a letter to Anthropic CEO Dario Amodei (Dario Amodei) on June 12th, announcing that Mythos 5 and Fable 5 would be subject to export controls. The immediate trigger for this decision was a claim from another company that it could "jailbreak" Mythos, alerting the Trump administration to potential national security risks.

It is reported that the Trump administration had previously attempted to prevent Anthropic from releasing these two models but was unsuccessful—prompting the subsequent, more forceful measure of export controls.

Faced with this sudden directive, Anthropic, while complying with its execution, issued an unusually strongly worded, lengthy statement, systematically rebutting the government's rationale.

Anthropic argues that the government's evidence of a "jailbreak" pertains only to a very narrow, non-generalizable attack method. Essentially, it involves instructing the model to read a specific code repository and fix software vulnerabilities within it—a capability that also exists in other publicly available models, including OpenAI's GPT-5.5, and is used daily by cybersecurity defenders for normal system maintenance.

Anthropic explicitly stated in its declaration that if "the existence of a limited-scope potential jailbreak" were to become the standard for recalling already-deployed commercial models, it would effectively bring all new deployments of frontier models across the entire industry to a halt. The company also emphasized that this government action did not follow the transparent, fair, and technically fact-based legal procedures it had previously publicly called for.

Anthropic stated it would comply with the government's lawful directive while actively engaging in communication with the government to work towards restoring access as soon as possible, promising to release more technical details within the next 24 hours. The company believes this incident stems from a misunderstanding and deeply apologizes for the inconvenience caused to users.

The following is the full text of the statement released by Anthropic, titled "Statement Regarding the U.S. Government's Directive to Suspend Access to Fable 5 and Mythos 5":

The U.S. government, citing national security authority, issued an export control directive requiring the suspension of access to Fable 5 and Mythos 5 for all foreign nationals, regardless of whether they are inside or outside the United States, including foreign employees of Anthropic. The practical effect of this directive is: we must immediately shut down Fable 5 and Mythos 5 for all users to ensure compliance. Other Anthropic models are unaffected.

We received this directive at 5:21 PM Eastern Time today. The letter did not specify the specific national security concerns. To our understanding, the government believes it possesses a method to bypass Fable 5's safety guardrails, referred to as a "jailbreak" technique. We reviewed a demonstration of this technique and found it only capable of identifying a small number of previously known, low-impact vulnerabilities. These vulnerabilities are all relatively simple; other publicly available models can identify the same issues without requiring a jailbreak.

In our Fable launch blog post, Anthropic articulated our position regarding its safety guardrails, as follows:

We have established robust safety guardrails that significantly reduce the likelihood of Fable being misused for cybersecurity-related tasks, among others. In fact, some users have reported that our guardrails are overly strict.

For weeks prior to Fable's launch, Anthropic collaborated with the U.S. government, the UK's AI Safety Institute, multiple third-party organizations, and internal teams, conducting cumulative thousands of hours of red-teaming on Fable's safety guardrails. The results showed that Fable's safety guardrails were markedly more effective than those of any previously deployed model.

To date, no testers have been able to find a "generalized jailbreak" method—that is, a jailbreak capable of comprehensively breaching the model's safety guardrails and unlocking a wide range of cyberattack capabilities.

We believe that, currently, no model provider can achieve perfect jailbreak protection. All guardrail mechanisms in the industry are susceptible to being bypassed by "non-generalized jailbreaks" (i.e., obtaining limited cyber information under specific circumstances), and generalized jailbreak methods may also emerge in the future. We made this clear at the time of Fable 5's launch.

Given that perfect jailbreak protection is currently infeasible, Anthropic adopted a defense-in-depth strategy for Fable 5. Our goal is to make jailbreak attacks either extremely narrow in scope (for non-generalized jailbreaks) or prohibitively expensive (for generalized jailbreaks), complemented by comprehensive monitoring to quickly detect and contain any successful attacks. This is also the reason Anthropic requires customer data retention for 30 days—although this policy has real impacts on our customer relationships, it aids our research and response to jailbreak risks.

We stand by this defense-in-depth strategy. It effectively reduces the risks posed by Fable to a level comparable with existing deployed models in the industry.

To date, we have not even received any formal disclosure regarding a non-generalized jailbreak that could lead to harmful consequences. The potential jailbreak cases disclosed to us are either entirely harmless or constitute only minor findings that do not demonstrate capabilities exclusive to Mythos.

Currently, the U.S. government has only provided us with verbal evidence regarding a potential, limited-scope, non-generalized jailbreak method. Its essence is instructing the model to read a specific code repository and fix software vulnerabilities within it. To our knowledge, this potential jailbreak method has been shared with the government. We reviewed a report—which we believe forms the basis for the government's directive—and have verified that the level of capability demonstrated in the report is similarly prevalent in other models (including OpenAI's GPT-5.5) and is used daily by cybersecurity defenders to maintain system security. We will release more details within the next 24 hours.

We will comply with the government's lawful directive and shut down access to Fable 5 and Mythos 5 for all users. However, we do not agree that the discovery of a limited-scope potential jailbreak method is sufficient grounds to recall a commercial model already deployed to hundreds of millions of users. Applying this standard across the industry would effectively bring all new model deployments by frontier model providers to a complete standstill.

We have publicly stated that governments should have the authority to prevent the deployment of unsafe models based on transparent, fair, clear, and technically fact-based legal procedures. This action did not adhere to those principles.

We deeply apologize for the inconvenience caused to our users. We believe this incident stems from a misunderstanding and are actively working to restore access as soon as possible.

Perguntas relacionadas

QWhat was the core reason given by the U.S. government for imposing export controls on Anthropic's Fable 5 and Mythos 5 AI models?

AThe U.S. government cited national security concerns as the core reason. The decision was triggered by another company's claim of a potential "jailbreak" method against the Mythos model, which raised alarms within the Trump administration about potential security risks.

QWhat immediate action did Anthropic take in response to the U.S. government's export control directive regarding Fable 5 and Mythos 5?

AIn compliance with the directive, Anthropic immediately shut down access to both the Fable 5 and Mythos 5 models for all users globally. This was because the company's technical systems could not precisely distinguish between "foreign persons" and "U.S. citizens." Access to their other models, like Claude Opus 4.8, remained unaffected.

QWhat is the main argument in Anthropic's rebuttal statement against the government's rationale for the export controls?

AAnthropic argues that the potential jailbreak method cited by the government is extremely narrow and non-generalized. The company claims the demonstrated ability (analyzing a codebase to fix software bugs) is common in other publicly available AI models, including OpenAI's GPT-5.5, and is routinely used by cybersecurity defenders for legitimate system maintenance. They contend that using this as a standard would halt all new deployments of frontier models across the industry.

QWhat distinguishes the Fable 5 model from the Mythos 5 model as described in the article?

AFable 5 is the first publicly released model from Anthropic's higher-tier Mythos family. It has strong safety guardrails that automatically block responses in high-risk areas like cybersecurity, biology, and chemistry. Mythos 5, based on the same underlying model, is a version with fewer safety restrictions, intended as a professional tool accessible only to pre-approved organizations, such as cybersecurity defenders and critical infrastructure operators.

QAccording to Anthropic, what key principle was lacking in the government's action to impose the export controls?

AAnthropic stated that the government's action did not follow the principles of a transparent, fair, clearly-defined, and technically-grounded statutory process. The company believes it has the right, based on such a proper process, to block unsafe model deployments, but argues this specific action lacked that due process.

Leituras Relacionadas

U.S. Tech Momentum Stocks Post Largest Single-Day Gain Ever, But Is the Plunge Over?

US tech momentum stocks staged a sharp rebound on Tuesday (July 21st). Morgan Stanley's TMT Momentum Factor surged over 12%, marking its largest single-day gain on record, exceeding even peaks from the 2000 dot-com bubble. Key momentum indices from Goldman Sachs also posted their strongest daily performances in years. The rally was led by semiconductors, with the Philadelphia Semiconductor Index jumping 4.6%. This rebound followed three consecutive down days and a cumulative 33% plunge in momentum stocks, one of the steepest drawdowns since the dot-com era. Analysts attribute the surge largely to a short squeeze. Heavy selling had pushed high-beta momentum stocks into deeply oversold territory, forcing many short sellers, particularly in Asia, to cover their positions, creating a self-reinforcing buying spiral. However, the rebound's internals appear weak. Trading volume was notably low, and advancing stocks still lagged decliners on the S&P 500, indicating a narrow, concentrated rally rather than broad market participation. Diverging views emerge on the outlook. BTIG warns the bounce has hit key resistance and recommends selling into strength, citing extreme volatility and historical parallels to past market tops. Conversely, Goldman Sachs and UBS believe the momentum unwind is nearing its end, suggesting it may be time to gradually add exposure, as positioning has been significantly reduced. They caution, however, that high volatility warrants a measured approach, potentially using defined-risk strategies. The upcoming earnings season, particularly reports from major tech firms like Alphabet, is seen as a critical test for the rally's sustainability. Simultaneously, bond markets flashed a warning, with yields rising partly due to spiking oil prices. Analysts note that if long-term Treasury yields break decisively higher, it could pose a significant headwind for equities, especially growth stocks.

marsbitHá 6m

U.S. Tech Momentum Stocks Post Largest Single-Day Gain Ever, But Is the Plunge Over?

marsbitHá 6m

U.S. Tech Momentum Stocks Record Largest Single-Day Gain Ever, but Has the Rout Ended?

U.S. tech momentum stocks staged a dramatic rebound on Tuesday, July 21st. Key momentum indices like the Morgan Stanley TMT Momentum Factor and Goldman Sachs' High Beta Momentum Long Index posted historic or near-historic single-day gains, fueled largely by semiconductor stocks. This sharp rally followed a severe three-day sell-off that saw momentum stocks plunge 33%, marking one of the steepest pullbacks since the dot-com bubble. Analysts attribute the bounce primarily to a short squeeze, as forced covering from over-leveraged traders, particularly in Asia, created a buying spiral. However, the rally's health is questioned due to weak market breadth—overall trading volume was low, and decliners outnumbered advancers in the S&P 500 despite the index's gain—suggesting a narrow, concentrated surge rather than broad recovery. Opinions on the sustainability diverge. BTIG strategists warn the rebound has hit key resistance levels, citing extreme volatility and historic stock dispersion as signs of an ongoing broader correction, and recommend selling into strength. Conversely, Goldman Sachs and UBS view the aggressive momentum unwinding as nearing its end, noting reduced positioning and a lack of new fundamental catalysts. They suggest the sell-off presents a selective opportunity to add exposure, albeit cautiously and gradually using defined-risk strategies. The immediate trajectory hinges on the ongoing earnings season, with market focus on Alphabet's capital expenditure guidance for AI investment clarity. Meanwhile, bond markets present a risk, with rising Treasury yields—potentially heading toward 5.5%—and widening credit spreads for mega-cap tech companies posing a threat to equity valuations. The combination of technical factors, earnings results, and macro conditions leaves the durability of the rebound in doubt.

链捕手Há 8m

U.S. Tech Momentum Stocks Record Largest Single-Day Gain Ever, but Has the Rout Ended?

链捕手Há 8m

Long-Divided Must Unite, Long-United Must Divide: When L1 Becomes Its Own Rollup, What Is Ethereum's Endgame?

"The Inevitable Cycle: When L1 Becomes Its Own Rollup – What is Ethereum's Endgame?" For years, the Ethereum community grappled with concerns that L2s were fragmenting the ecosystem and eroding L1's value. While L2s provided cheaper execution, they also splintered liquidity and the unified user experience of a single chain. This has prompted a fundamental reassessment of the relationship between L1 and L2. Ethereum's roadmap is evolving. The "Scale" initiative merges L1 and L2 expansion into a holistic framework. L1 itself is advancing with higher gas limits, statelessness, and zkEVM verification, no longer content to be just a low-throughput settlement layer. Consequently, the primary value proposition of L2s is shifting from merely providing cheap blockspace to offering L1 cannot easily provide: application-specific optimizations, privacy features, and flexible governance models. L2s are becoming a spectrum of execution environments with varying degrees of security inheritance from Ethereum. A critical challenge in this multi-chain future is interoperability. The vision is to make Ethereum "feel like one chain again." This relies on advancements in native account abstraction (like EIP-7702) and intent-based architectures (Open Intents Framework), where users declare desired outcomes, and solvers handle the complex cross-chain execution. Furthermore, shortening Ethereum's finality time from minutes to seconds is crucial, as it underpins trust between chains for bridges, stablecoins, and cross-chain applications. Perhaps the most provocative idea is that Ethereum L1 itself could become a form of "its own Rollup." As zkEVM and proof systems mature, high-performance nodes could execute transactions and generate validity proofs. Regular validators would then verify these proofs instead of re-executing all transactions. This blurs the traditional L1/L2 hierarchy, making "Rollup" more of a general execution-verification architecture. Native Rollup aims to integrate L2 validation more directly into the Ethereum protocol, allowing L2s to inherit L1's security more fully and move away from reliance on security councils. In the end, L2s are not destined to replace L1 or be made obsolete by it. The likely future is a unified system where diverse execution environments—each optimized for specific use cases like DeFi, gaming, or privacy—coexist. They will share a common foundation of security, liquidity, and verifiable state, seamlessly connected to restore a cohesive user experience. The next phase for Ethereum is not just about scaling through separation, but about intelligently reintegrating what was separated back into a coherent whole.

链捕手Há 25m

Long-Divided Must Unite, Long-United Must Divide: When L1 Becomes Its Own Rollup, What Is Ethereum's Endgame?

链捕手Há 25m

Agent Race Ends, Super Workbench Takes Over

The era of fragmented AI agents is ending. Over the past month, China's tech giants—Tencent, Alibaba, and ByteDance—have simultaneously shifted strategy: instead of launching new, standalone AI agents, they are consolidating their various agent projects into unified "super workbenches." Tencent integrated its QClaw teams into WorkBuddy, a strategic product hailed as a potential third flagship after QQ and WeChat. Alibaba is merging its QoderWork, Wukong, and MuleRun agents into a new "Qianwen Office" platform under DingTalk's leadership. ByteDance rebranded its TRAE SOLO coding agent to TRAE Work, signaling a broader focus on workflow collaboration. This convergence marks a pivotal industry consensus. The initial exploration phase, where companies rapidly built numerous overlapping agents for different scenarios, proved costly and inefficient. With open-source tools eroding technical barriers, competition has shifted from agent creation to resource consolidation and cost control. Historically, platform wars are won not by creating more products, but by simplifying them—as seen with browsers unifying web access and super-apps consolidating services. Now, the "super workbench" aims to become the unified AI entry point for work. This reflects a deeper market realization: the primary audience for AI is no longer just programmers (a market in the tens of millions) but all knowledge workers (a market of billions). The real opportunity lies in augmenting everyday tasks—managing emails, documents, data, and meetings—across the entire workday. The core battleground is becoming control over the primary AI entry point that employees use daily. Tencent's WorkBuddy leverages WeChat and Tencent Docs; Alibaba's Qianwen Office taps into DingTalk's organizational data; ByteDance's TRAE Work integrates with Feishu's workflows. Whoever owns this "super workbench" gains strategic control over orchestrating enterprise data and APIs. This shift is redefining enterprise software. Traditional SaaS applications, valued for their user interfaces, will recede into the background. Their core functionalities will be exposed as standardized "Skills" or APIs for the super workbench's agents to invoke. Software value will shift from selling user seats to charging based on API calls and outcomes delivered. The evolution of agents is moving through clear stages: first as novel standalone products, then as consolidated primary work entry points, and finally as pervasive, invisible capabilities embedded into the digital fabric. The recent moves by major tech firms signal the transition from the first stage into the second, accelerating toward the third. In the end, the most successful agent technology may become invisible—like electricity or the HTTP protocol—a fundamental, unnamed infrastructure powering work itself.

marsbitHá 52m

Agent Race Ends, Super Workbench Takes Over

marsbitHá 52m

Trading

Spot
活动图片