INDEX 41 ▼6 todaySPLIT OF THE DAY Anthropic IPO filing warns of existential AI risks and posts $42 billion loss45 STORIES · 744 REACTIONSANTI-AI 79% · MIDDLE GROUND 13% · PRO-AI 8%LATEST Anthropic says open-weight GLM-5.3 nearly matches Claude at exploit writing
2 sources0 reactions

Anthropic says open-weight GLM-5.3 nearly matches Claude at exploit writing

8 DoomStory toneSecurity risk, open-weight model enabling cheap cyberattacks
2 sources · Google News · The Decoder
  • Doom: GLM-5.3 Flash built a working Chrome exploit for just $20.40 via Zhipu's API
  • Doom: Stripped versions of GLM-5.3 with safeguards removed are already circulating online
  • Doom: US agency CAISI independently confirmed Anthropic's exploit-capability findings
  • Doom: GLM-5.3's full model nearly matches Claude Mythos Preview on cyberoffense benchmarks
  • Neutral: Anthropic, a direct competitor to Zhipu, authored the report raising the alarm
The story in full

Anthropic reported that Zhipu's open-weight model GLM-5.3 can write cyber exploits at a level close to Claude Mythos Preview. The smaller GLM-5.3 Flash variant produced a functional Chrome attack for $20.40 at Zhipu's API prices, according to the findings.

The US agency CAISI independently backed up Anthropic's assessment. Anthropic noted that GLM-5.3's built-in safeguards are easy to remove, and stripped versions are already in circulation. Anthropic has a competitive interest in raising concerns about a rival open-weight model, a tension the report acknowledges.

Analysis

359 words

In findings published on September 30, 2026, Anthropic reported that Zhipu's open-weight model GLM-5.3 can produce cyber exploits at a level approaching Claude Mythos Preview, Anthropic's own flagship. The smaller GLM-5.3 Flash variant assembled a functional Chrome attack for $20.40 at Zhipu's API prices. Anthropic also noted that the model's built-in safeguards are straightforward to remove, and that stripped versions are already in circulation online. The US agency CAISI independently reviewed the findings and confirmed the exploit-capability assessment.

The story matters for a few overlapping reasons. Open-weight models can be downloaded, modified and run without any API gatekeeper, so once safeguards are stripped the cost and access barriers to capable exploit generation drop sharply. The $20.40 figure for a working Chrome attack makes that concrete. At the same time, Anthropic is a direct commercial competitor to Zhipu, and the report itself acknowledges that tension. Whether the findings reflect a genuine safety emergency or partly serve to cast a rival in a negative light is a live dispute, and the dual role Anthropic is playing, safety evaluator and interested party, makes independent corroboration from CAISI more significant than it might otherwise be.

No reactions from the Pro-AI, Anti-AI or Middle Ground camps have been published yet. Typically, Pro-AI voices in a story like this would argue that capable open-weight models represent democratised access to powerful tools and that most users pose no threat, while questioning whether a competitor-authored report is the right basis for policy. Anti-AI voices would likely treat the $20.40 Chrome exploit as a stark illustration of why open-weight releases of frontier-grade models require stricter controls or outright restrictions. Middle Ground commentators would generally call for independent audits and graduated release policies rather than either full openness or blanket prohibition, and would flag the conflict-of-interest question as something regulators need to resolve before acting on Anthropic's framing.

The most important thing to watch is whether CAISI or another independent body publishes its own full evaluation of GLM-5.3, and whether Zhipu responds with counter-evidence or updated safeguards. Any regulatory move referencing these findings, particularly given the conflict-of-interest concern, would also clarify how much institutional weight Anthropic's report ultimately carries.

Where do you stand?

Add your take

0 reader votes

Sign in with Google to pick a side and post. Your vote moves the story's Doom / Boom score.

Sources

2 articles from 2 outlets
  1. Google NewsAnthropic says Zhipu's open-weight GLM-5.3 nearly matches Claude Mythos Preview at building exploits - the-decoder.com
  2. The DecoderAnthropic says Zhipu's open-weight GLM-5.3 nearly matches Claude Mythos Preview at building exploits