
Mythos模型数小时内发现美政府绝密系统漏洞,触发出口管制与主权AI辩论
Anthropic的AI在测试中快速识别高度敏感系统弱点,美国随即限制外国访问,引发法律挑战和全球对技术依赖的反思。
美国人工智能公司Anthropic的Mythos模型在一次受限测试中,于数小时内识别出美国政府多个最高机密计算机系统的安全漏洞。该测试属于代号“玻璃翼计划”(Project Glasswing)的专项合作,旨在抢在攻击者之前发现并修复关键软件缺陷。一位匿名美国官员向美联社确认,模型在数小时内定位了弱点,但强调这并不等同于成功利用这些漏洞。民主党参议员马克·沃纳此前在国会听证中援引国家安全局局长的信息称,Mythos“几乎攻破了我们所有的机密系统,不是用几周,而是用几小时”。
此次测试暴露了前沿AI在网络安全领域的双重潜力:既能加速防御,也可能被用于进攻。美国政府随后采取了一系列快速收紧措施。商务部工业与安全局于6月12日下令,要求Anthropic暂停向全球所有外国公民提供其最新的Fable 5和Mythos 5模型,理由是国家安全担忧。据《金融时报》报道,白宫仅给予公司90分钟执行期限,触发因素之一是亚马逊的研究发现Fable 5的安全防护机制存在被绕过的可能。Anthropic当日即关闭了所有客户的访问权限,以遵守指令。
这一限制令的背景是Anthropic与特朗普政府之间持续紧张的关系。该公司此前拒绝允许美军将其AI用于国内监控或全自主武器系统,导致被列入供应链黑名单,国家安全局也失去了对Mythos的访问权限。限制措施立即引发反弹:美国法律科技公司Legion LegalTech Corp提起诉讼,称该指令非法切断了其加拿大开发团队对关键工具的访问,造成“直接、不可弥补且关乎存亡”的损害。与此同时,超过100名网络安全高管和专家——包括来自Adobe和英伟达的领导者——敦促政府解除限制,警告边缘化Anthropic的模型可能削弱美国自身的防御能力,并指出Mythos在漏洞发现方面并非“独一无二地优于”其他基础模型和开源模型。
国际层面,加拿大AI公司Cohere的首席执行官艾丹·戈麦斯将美国的限制令描述为“一记巨大的警钟”,呼吁民主国家停止从外国“租用”AI,转而追求“主权AI”,即对数据中心、芯片和模型的全链条国内控制。他承认单一国家难以独立承担所有层级,主张通过国际联盟实现现实的主权。这一表态反映出美国技术出口管制正在加速全球AI供应链的重组,尤其对亚洲和欧洲中等强国形成压力。
当前,Legion公司已申请法院初步禁令以阻止该指令的执行,Anthropic则与政府就解除限制进行谈判。后续值得关注的节点是联邦法院对初步禁令的裁决,以及商务部是否会调整或撤销对外国公民的模型访问禁令。这些进展将为前沿AI的出口管制与安全治理提供先例,并直接影响美国及其盟友在AI基础设施上的合作模式。
| 俄罗斯及独联体媒体 | −0.70 | critical |
|---|---|---|
| 大西洋/英语圈媒体 | +0.30 | aligned |
| 印度及南亚媒体 | 0.00 | neutral |
Russia denounces US hypocrisy: the vulnerabilities exposed by Mythos demonstrate the fragility of American systems, and the AI export restrictions are merely a cover for hegemonic control.
By inverting blame, the US vulnerability is used to accuse Washington of hypocrisy, turning a weakness into an attack on others' credibility.
The Russian material omits mentioning that Mythos might be a hacker group with ties to Russia, and does not discuss legitimate US national security concerns.
The United States acts prudently: the vulnerabilities discovered by Mythos require control measures to protect national security, and the AI export restriction is a proportionate response.
By normalizing the reaction, the US response is presented as a technical and depoliticized measure, avoiding discussion of geopolitical implications.
The Atlantic material omits analyzing possible political motivations behind the restrictions and does not mention international criticism of the measure.
India watches carefully: the Mythos incident and US AI restrictions pose challenges and opportunities for its own technological development, requiring an autonomous strategy.
By strategically distancing itself, India presents itself as a neutral actor evaluating implications for its own interests, without openly taking sides.
The Indian material omits analyzing broader geopolitical implications and does not mention reactions from other countries like China or Russia.