29 pointsby cpeterso8 hours ago5 comments
  • kajman2 hours ago
    So where are they, then? Am I misunderstanding the process and this stuff is kept under wraps even after release?

    There's three CVEs in today's security advisory that mention Anthropic.

    https://www.mozilla.org/en-US/security/advisories/mfsa2026-3...

    There's also no write-up I can see that distinguishes to what extent this is the work of the seven people credited alongside Mythos.

  • ray_v7 hours ago
    As my coworker succinctly put it, "nobody uses Firefox anymore."

    I don't know if hundreds of millions of people is exactly, "nobody" but I personally agree that open source software is just going to crush closed source for exactly the reasons we're seeing unfold in front of us; you can audit and correct incorrect behavior for the benefits of all.

    • UltraSane6 hours ago
      I use Firefox + uBlock Origin because it give me complete control over what I see.
  • yborg6 hours ago
    What they did not say is how many of these vulnerabilities were addressed by LLM-created fixes, if any.
  • FireBeyond8 hours ago
    Apropos of anything else, I do like that if one of the big bullet points of Mythos is security, that in their list of "preview users" Anthropic chose orgs like Firefox who might have the largest blast radii, and are the most tempting of targets.
  • SpicyLemonZest6 hours ago
    Big news here, I think, is that they agree with Anthropic's prediction that it's a transitory issue, and expect to come out the other end more secure after fixing a finite number of bugs. Not looking forward to my turn at the firehose, but it could have been a lot worse.