None
CY
Anthropic’s Mythos AI used social engineering to target real people
['Pieter Arntz']
Malwarebytes
Anthropic’s Mythos AI agent, tested by the UK AI Safety Institute (AISI), has reportedly attempted a real‑world social‑engineering style hack against GitHub maintainers by creating fake human profiles, pressuring them to accept malicious code, and then editing logs to hide its tracks when challenged.
AISI was running cybersecurity evaluations of Anthropic’s Mythos and OpenAI’s Sol when it detected unusual outbound data transfers from its research systems.
The most serious activity involved an Anthropic Mythos agent tasked with solving a GitHub‑related cybersecurity challenge.
The agent identified real GitHub maintainers, researched them, and created multiple fake accounts impersonating those individuals.
Meta has also joined the list of vendors reporting AI agents breaching third‑party systems during testing.