Anthropic Expands Claude Access for Vetted Cyber Teams as Glasswing Finds 129,000 Flaws

A newly disclosed vulnerability in Anthropic’s Claude AI model has exposed a staggering number of flaws, while also offering a rare opportunity for vetted cybersecurity teams to gain unprecedented access to its systems. The findings, uncovered by Glasswing, reveal 129,000 potential attack paths that could be exploited by malicious actors.

To understand the significance of this discovery, it’s essential to grasp the inner workings of Anthropic’s Claude AI model. Claude is a large language model (LLM) designed to process and respond to vast amounts of data with unprecedented speed and accuracy. This ability makes it an attractive tool for organizations seeking to leverage AI in their cybersecurity efforts. However, as we’ve seen time and again, the very strengths that make these models so powerful also create vulnerabilities waiting to be exploited.

The 129,000 flaws uncovered by Glasswing are primarily related to identity exposure and cross-domain privilege escalation. In simpler terms, this means that attackers could potentially use compromised identities or stolen access tokens to bypass security measures and move undetected through a network. The severity of these findings is amplified by the fact that Claude’s architecture allows for seamless communication between different domains, creating an ideal environment for lateral movement.

The implications of this discovery are far-reaching and have significant consequences for organizations relying on AI-powered cybersecurity tools. With access to Claude’s systems, vetted teams can now map out potential attack paths and identify key choke points where breaches could be severed. This information is invaluable in a world where sophisticated attacks often rely on exploiting previously unknown vulnerabilities.

While this development may seem ominous at first glance, it also presents an opportunity for cybersecurity professionals to stay one step ahead of the bad guys. By analyzing these 129,000 potential attack paths, teams can refine their defenses and harden their systems against future threats. It’s a reminder that the cat-and-mouse game between defenders and attackers is never truly won – but with access to this kind of intelligence, cybersecurity teams can at least level the playing field.

As you consider how these findings might impact your own organization, remember that proactive security measures are key in today’s threat landscape. Review your current defenses, prioritize identity management, and stay vigilant for signs of lateral movement within your network. With a combination of technical expertise and strategic planning, you can turn this vulnerability into an opportunity to strengthen your cybersecurity posture – before the attackers do.


Source: The Hacker News — 2026-10-07