{"id":89656,"date":"2026-06-29T17:50:10","date_gmt":"2026-06-29T17:50:10","guid":{"rendered":"https:\/\/www.europesays.com\/ai\/89656\/"},"modified":"2026-06-29T17:50:10","modified_gmt":"2026-06-29T17:50:10","slug":"why-pulling-one-ai-model-wont-fix-ai-security","status":"publish","type":"post","link":"https:\/\/www.europesays.com\/ai\/89656\/","title":{"rendered":"Why Pulling One AI Model Won&#8217;t Fix AI Security"},"content":{"rendered":"<p class=\"text-muted\">\n                                            <a href=\"https:\/\/www.govinfosecurity.com\/agentic-ai-c-940\" id=\"asset_topic_1_1\" rel=\"nofollow noopener\" target=\"_blank\">Agentic AI<\/a><br \/>\n                                                    ,<br \/>\n                                                            <a href=\"https:\/\/www.govinfosecurity.com\/artificial-intelligence-machine-learning-c-469\" id=\"asset_topic_1_2\" rel=\"nofollow noopener\" target=\"_blank\">Artificial Intelligence &amp; Machine Learning<\/a><br \/>\n                                                    ,<br \/>\n                                                            <a href=\"https:\/\/www.govinfosecurity.com\/cyberedboard-c-920\" id=\"asset_topic_1_3\" rel=\"nofollow noopener\" target=\"_blank\">CyberEdBoard<\/a>\n                                                                                                                                                                                                                                    <\/p>\n<p>                    Cybersecurity Advisor Chris Eng on Need to Accurately Measure Frontier Model Risks<\/p>\n<p>                                                <a class=\"author-link\" href=\"https:\/\/www.govinfosecurity.com\/authors\/tom-field-i-123\" rel=\"nofollow noopener\" target=\"_blank\">Tom Field<\/a> (<a href=\"https:\/\/www.twitter.com\/SecurityEditor\" rel=\"nofollow noopener\" target=\"_blank\">SecurityEditor<\/a>)                                                    \u2022<br \/>\n                        June 29, 2026 \u00a0 \u00a0 <a href=\"https:\/\/www.bankinfosecurity.com\/pulling-claude-fable-5-mythos-wont-fix-ai-security-a-32012#disqus_thread\" rel=\"nofollow noopener\" target=\"_blank\"><\/p>\n<p>                <img decoding=\"async\" src=\"https:\/\/www.europesays.com\/ai\/wp-content\/uploads\/2026\/06\/chris-eng-ceb-shell-image_large-8-a-32012.jpg\" alt=\"Why Pulling Claude Fable 5, Mythos Won't Fix AI Security\" class=\"img-responsive hidden\"\/><\/p>\n<p>                     Chris Eng, cybersecurity advisor and consultant<\/p>\n<p>Federal export controls forced Anthropic to cut off access to its Fable and Mythos models with roughly 90 minutes&#8217; notice and minimal transparency. The real problem wasn&#8217;t the decision itself, but how it was made &#8211; without published data, clear methodology or scientific rigor, Chris Eng, a cybersecurity advisor and consultant.<\/p>\n<p>See Also: <a href=\"https:\/\/www.govinfosecurity.com\/edge-transformation-top-5-sase-predictions-trends-a-31791?rf=RAM_SeeAlso\" rel=\"nofollow noopener\" target=\"_blank\">Edge Transformation: Top 5 SASE Predictions and Trends<\/a><\/p>\n<p>Eng is one of more than 100 prominent cybersecurity leaders, researchers, academics and former government officials, who signed an open letter to U.S. Commerce Secretary Howard Lutnick and National Cyber Director Sean Cairncross, saying that restricting access to Anthropic&#8217;s models would weaken defenders by denying them advanced AI tools for vulnerability discovery, secure code review, malware analysis and incident response.<\/p>\n<p>The export control-related shutdown stemmed from a research paper claiming the models could be subverted. But the vulnerability amounted to asking a model to find and fix code flaws, a core defensive use case. Eng said the same behavior is replicated across GPT-5.5, Sonnet and open-weight models, so removing one company&#8217;s tools accomplishes little while putting it in a commercial disadvantage.<\/p>\n<p>What&#8217;s needed instead is structured, published benchmarks that measure how well each model resists jailbreaks against explicit, measurable criteria, he said (see: <a href=\"https:\/\/www.govinfosecurity.com\/restore-fable-mythos-access-cybersecurity-leaders-urge-a-31986\" rel=\"nofollow noopener\" target=\"_blank\">Restore Fable and Mythos Access, Cybersecurity Leaders Urge<\/a>).<\/p>\n<p>&#8220;It reminded me of previous export restriction type things that we&#8217;ve seen in the past around cybersecurity where somebody just gets worked up over the danger of something without thinking about the side effects,&#8221; he said.<\/p>\n<p>In this <a href=\"https:\/\/cyberedboard.io\/\" target=\"_blank\" rel=\"nofollow noopener\">CyberEdBoard<\/a>-sponsored video interview with ISMG&#8217;s Tom Field, Eng also discussed:<\/p>\n<p>How AI compresses the time from vulnerability disclosure to active exploitation;<br \/>\nWhy legacy code remediation still depends on human developers as a backstop;<br \/>\nWhat rising token costs mean for CISO threat modeling and resilience.<\/p>\n<p>What made Fable 5 different? And why did it become a defining moment in the conversation around AI safety? <a href=\"https:\/\/ismg-cdn.nyc3.cdn.digitaloceanspaces.com\/asset_files\/external\/cyberedboard-wp-the-fable-directive-draft-20260618-2-1.pdf\" target=\"_blank\" rel=\"nofollow noopener\">Download<\/a> this report unpacking one of the most consequential events in AI governance.<\/p>\n<p><a id=\"dld_btn\" class=\"btn btn-lg btn-primary top10 bot10\" href=\"https:\/\/ismg-cdn.nyc3.cdn.digitaloceanspaces.com\/asset_files\/external\/cyberedboard-wp-the-fable-directive-draft-20260618-2-1.pdf\" target=\"_blank\" rel=\"nofollow noopener\">Download the Fable 5 Directive Report<\/a><br \/>\nAbout the Speaker<\/p>\n<p>Eng advises cybersecurity companies on product strategy, research direction and market alignment. With more than 25 years of experience, he specializes in application security and software security research. He previously led research at Veracode and held leadership roles at CA Technologies, Symantec and @stake.<\/p>\n<p>            <script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n","protected":false},"excerpt":{"rendered":"Agentic AI , Artificial Intelligence &amp; Machine Learning , CyberEdBoard Cybersecurity Advisor Chris Eng on Need to Accurately&hellip;\n","protected":false},"author":2,"featured_media":89657,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[8],"tags":[24383,1798,4788,47465,1710,53,3154,8918,47467,3886,182,16193,38159,20205,39677,26696,353,47057,47466,44706],"class_list":["post-89656","post","type-post","status-publish","format-standard","has-post-thumbnail","category-anthropic","tag-ai-export-controls","tag-ai-governance","tag-ai-regulation","tag-ai-risk-assessment","tag-ai-security","tag-anthropic","tag-anthropic-claude","tag-application-security","tag-chris-eng","tag-ciso","tag-claude","tag-code-vulnerabilities","tag-fable","tag-frontier-models","tag-jailbreak","tag-llm-security","tag-mythos","tag-open-weight-models","tag-time-to-exploitation","tag-vulnerability-remediation"],"_links":{"self":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/posts\/89656","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/comments?post=89656"}],"version-history":[{"count":0,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/posts\/89656\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/media\/89657"}],"wp:attachment":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/media?parent=89656"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/categories?post=89656"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/tags?post=89656"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}