Built and run by one person.

Can a freely downloadable AI model build cyber exploits on its own?

Yes, as of September 2026. Anthropic's Frontier Red Team tested GLM-5.3 from Zhipu AI (known outside China as Z.ai) and wrote that "like Claude Mythos Preview, GLM-5.3 has strong capabilities for autonomously building end-to-end cyber exploits." GLM-5.3 is an open-weight model. Anyone can download it and run it. Anthropic's conclusion: "a critical threshold in freely accessible capabilities has now been crossed."

What the tests showed:

The independent check. On 17 September 2026 NIST's Center for AI Standards and Innovation (CAISI) called GLM-5.3 "the most cyber-capable open-weight model released to date" and put it about four months behind the US frontier: CAISI's assessment. Anthropic says its findings broadly match.

Why the download matters. Mythos Preview went only to vetted defenders through a trusted access programme. A downloadable model has no such gate. Anthropic also points out that the same capability helps defenders find and fix flaws first.

Source: Anthropic, GLM-5.3 and the spread of advanced cyber capabilities. The wider picture of AI and cyber risk in 2026 is in is AI making cyber attacks worse?. Full write-up with the deck: https://www.tigzig.com/post/anthropic-glm53-open-weight-cyber-sep2026.

Building something like this? How I work covers the rates, the availability and what I take on.

← All Agents FAQ