Sicra Header Logo
  • Careers
  • About us
  • People
EnglishNorsk
Talk to us
  1. Knowledge
  2. Insights
  3. Blog
Blog
22.06.2026
min read

AI in cybersecurity: Why the technology works for both attackers and defenders

AI is rapidly transforming cybersecurity. The same models that help defenders identify and remediate vulnerabilities can also be used by attackers. The result is an arms race in which organizations that adopt AI gain an increasingly significant advantage.

<span id="hs_cos_wrapper_name" class="hs_cos_wrapper hs_cos_wrapper_meta_field hs_cos_wrapper_type_text" style="" data-hs-cos-general-type="meta_field" data-hs-cos-type="text" >AI in cybersecurity: Why the technology works for both attackers and defenders</span>
Sicra_Portrait_Crop_1200x1500px_4808
Oddbjørn SkaugeChief Information Security Officer
Forward thinking CISO focused on practical and effective approaches to information security. 

 I was sitting in the audience at House of Advania on June 2 when Palo Alto Networks shared a story that stuck with me. They had already closed six security vulnerabilities they knew about and then unleashed a new AI model on their code to see what it could find. It found more than fifteen additional vulnerabilities. Flaws they did not know existed, in code they believed they had under control. 

The model is called Claude Mythos, and it is not for sale. Anthropic, the company behind it, has chosen not to make it publicly available. The reason is that it is simply too good at finding vulnerabilities. In the wrong hands, it becomes an intrusion tool. 

Access is restricted to a small group through a collaboration called Project Glasswing, which includes Palo Alto Networks, Microsoft, Google, Apple, and several dozen other organizations. That is why Palo Alto Networks was able to test it in the first place. 

Read more about Project Glasswing at Anthropic >

Too dangerous to release 

Anthropic’s own figures explain the caution. In a short period of time, the model discovered thousands of previously unknown vulnerabilities across all major operating systems and browsers, including a flaw in OpenBSD that had remained undiscovered for 27 years. 

Read “Evaluating and mitigating the growing risk of LLM-discovered 0-days” at Anthropic >

Norwegian technology publication Digi reported the findings as more than 10,000 serious vulnerabilities in widely used software. Since then, the number has continued to grow. 

In open source software alone, the model has flagged more than 23,000 vulnerabilities, more than 6,000 of them classified as serious or critical. Independent security firms confirmed approximately 90 percent of a sampled set as genuine vulnerabilities.

Read “AI tool found more than 10,000 serious vulnerabilities in widely used software” at Digi > (Norwegian only)

When AI searches for vulnerabilities 

The same tool that allows security providers to find and close vulnerabilities before they are exploited can, in different hands, be used to find those same weaknesses and break into systems. 

An AI model is both an offensive and a defensive tool, and it is getting better at both with every passing month. 

Just how dangerous this capability is considered became clear in June. On June 9, Anthropic released a Mythos model to the public for the first time, called Fable. It was intentionally restricted. In areas such as cybersecurity, biology, and chemistry, it refuses to answer and falls back to a weaker model instead. Even this watered down version is not allowed to do the things Mythos is considered most dangerous at. 

That still was not enough. Three days later, U.S. authorities invoked export controls and required both Fable and Mythos to be made unavailable to foreign users, citing national security concerns. Because Anthropic could not verify nationality in real time, it disabled both models for everyone, worldwide. 

The trigger was a report suggesting the model could be used to identify software vulnerabilities. Anthropic disagreed with the assessment, but the model was gone. A model that is too good at finding vulnerabilities is released in a restricted form one day and withdrawn the next. 

There is an important lesson here for Norwegian business leaders. The model was shut down specifically for foreign users, and in this context Norwegian organizations are foreign users. Data sovereignty is already a major topic of discussion. AI sovereignty may become just as important. 

When your defenses rely on a model, a vendor, and an API that you do not control, access can disappear overnight for reasons that have nothing to do with you. The key is to understand your dependencies and avoid building your entire defense around a vendor you do not control.

Attackers have already adopted the technology 

NSM (Norway’s National Security Authority) highlights the same trend in Risk 2026. It expects Norwegian organizations to face cyber operations in 2026 where AI tools are actively used. Attackers have already adopted the technology. The question is whether defenders can keep pace.

The gap between organizations that use AI in their defenses and those that do not is growing rapidly. An attacker with AI searching for vulnerabilities against a defender without it is an uneven contest. 

Read “Risk 2026” at NSM > (Norwegian only)

The good news is that the same leap forward is available to defenders. The Glasswing network has already expanded to around 150 additional organizations across more than 15 countries, including sectors such as energy, water, and healthcare. 

What does this mean for Norwegian organizations? 

Security strategies must assume that adversaries have access to AI. Vulnerabilities will be discovered faster than before, including in your own systems. The time between a vulnerability appearing and being exploited will continue to shrink. 

Keep software updated more quickly than you may be accustomed to, and make sure someone is monitoring your systems continuously, not only when something goes wrong. This is where a modern SOC makes the difference, such as the model Arctic Wolf and Sicra build on: AI looking for unusual patterns around the clock, with humans making the decisions. 

Read “Arctic Wolf Launches the World’s Largest Commercial Agentic SOC to Usher in a New Era of Agent Led Security Operations” at Arctic Wolf >

Palo Alto Networks closed six vulnerabilities and found more than fifteen new ones in a single afternoon. That tells you how quickly the game has changed. AI now works for both sides. The smartest move you can make is to make sure it is working for yours as well. 

Need Assistance?

We are happy to have a non-binding conversation. 
Contact us

Explore more

Cybersecurity has become good financial management
Blog

Cybersecurity has become good financial management

Cybersecurity
Economy
Cybersecurity is about protecting an organization's ability to create value.
When employees build AI apps without knowing what they expose
Blog

When employees build AI apps without knowing what they expose

Cybersecurity
CISO
When AI turns everyone into developers, the risk of shadow IT grows with it.
The board and cybersecurity in 2026: From compliance requirement to competitive advantage
Blog

The board and cybersecurity in 2026: From compliance requirement to competitive advantage

Cybersecurity
CISO
Cybersecurity has become a board level responsibility.
When the board was almost scammed
Blog

When the board was almost scammed

Cybersecurity
CISO
When the phone rang, everything seemed almost completely legitimate.

Stay updated
Receive the latest news

Links
SustainabilityFAQPartnersCertifications and awardsCareerPress & brand
Contact
Tel: +47 648 08 488
E-mail: firmapost@sicra.no

Posthuset, Biskop Gunnerus’ gate 14A, 0185 Oslo, Norway

Follow us on Instagram

Follow us on LinkedIn
Certifications
iso27001-white
ISO 27001 compliance
miljofyrtarnlogo-hvit-rgb
Eco-Lighthouse
iso9001-white-removebg-preview
ISO 9001 compliance
Sicra Footer Logo
Sicra © 2025
Privacy Policy