Washington Pulled the Plug on Anthropic ‘s Fable 5 and Mythos 5 models. The Rest of the World Is Watching.
2026-06-14T02:51:50Z•f812d98f8e295aed34107f5c45c67aa04d32e17fab876bf5f8a60e359f215d76
AI policyAnthropicBitLocker bypassCISA KEVCVE-2026-10520CVE-2026-25089CVE-2026-35273Cal WaterFable 5FortiSandboxGreatXMLHandalaIoT camerasIvanti SentryMythos 5OnyxC2Oracle PeopleSoftShinyHuntersUS Commercedata leakexposed devicesmalware-as-a-servicewater utility breach
What happened
This feed reports a mix of high-impact cyber incidents, active exploits, and policy actions: the US Commerce Department moved to restrict Anthropic’s Mythos 5 and Fable 5 models; CISA added multiple high-severity flaws to its Known Exploited Vulnerabilities (KEV) list — notably Ivanti Sentry CVE-2026-10520 (CVSS 10.0) and Oracle PeopleSoft CVE-2026-35273 (CVSS 9.8) — with Ivanti being actively exploited shortly after patch release. ShinyHunters leveraged the PeopleSoft zero-day in a widespread campaign; Fortinet patched a critical FortiSandbox command-injection flaw (CVE-2026-25089, CVSS 9.8).
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityaffairs
- Record identifier
- f812d98f8e295aed34107f5c45c67aa04d32e17fab876bf5f8a60e359f215d76
- Enrichment time
- 2026-06-14T02:51:50Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.