Skip to main content
Anthropic Mythos AI rollout, bypassing CISA, highlights cybersecurity agency funding cuts.

Editorial illustration for Anthropic’s Mythos rollout bypasses CISA as agency faces funding cuts

Anthropic Mythos Bypasses CISA Amid Budget Cuts Controversy

Anthropic’s Mythos rollout bypasses CISA as agency faces funding cuts

Updated: 3 min read

Anthropic released Mythos Preview this week. The AI company says it finds security holes in every major operating system and web browser. But America’s central hub for cyber threat intelligence, the Cybersecurity and Infrastructure Security Agency, didn’t get a look.

That was no accident. Under Trump, CISA is being gutted. Budgets are slashed.

Staff reassigned to work on immigration. It’s been a political target since calling the 2020 election secure. Now a major vulnerability finder launches without its input.

The people supposed to guard the lights and the ballots are being cut out.

Combined with other actions to limit CISA's workforce and funding, the report signals that CISA's operations still haven't been prioritized by the administration, possibly putting digital security at risk. The agency, which is part of the Department of Homeland Security, is meant to serve as the central coordinating body for cybersecurity information, helping state and local officials that run elections and public utilities stay apprised of vulnerabilities and respond to attacks when they occur. But the Trump administration and congressional Republicans have launched political attacks on it, particularly after it declared the 2020 election that President Donald Trump lost to Joe Biden the "most secure in American history." Trump later fired the official who led that agency in his first administration.

The report signals that CISA's operations still haven't been prioritized by the administration Since returning to office last year, the Trump administration has made a series of decisions that further limit the agency's remit. Like other federal agencies, CISA lost talent during the Department of Government Efficiency's cost-cutting efforts, and some staff was also reassigned to work on immigration priorities under DHS. Its acting director told Congress that its resources to detect hacks were limited amid the current DHS shutdown, yet the Trump administration is seeking to trim hundreds of millions more from the agency's budget.

CISA's reported lack of access to Anthropic's Mythos Preview raises further questions about why an agency tasked with protecting critical infrastructure from cyberattacks isn't able to test a tool that's found security issues "in every major operating system and web browser," according to Anthropic.

The national alarm system for digital threats is being ignored. Starved on purpose. So when Anthropic unveils a tool that finds critical flaws everywhere, CISA isn’t on the list.

The failure is already written. The next attack will happen. It won’t be a technical failure.

It will be political. The people who were supposed to see it coming will have been sent to the back of the room.

Common Questions Answered

How did Anthropic's Mythos AI model bypass CISA's review process?

Anthropic rolled out the Mythos AI model directly to open-source platforms without obtaining CISA's clearance. The move occurred during a period of budget cuts and staff reductions at CISA, which limited the agency's ability to effectively review and monitor new AI technologies.

What implications does Mythos' unreviewed rollout have for federal cybersecurity?

The unreviewed deployment of Mythos raises significant concerns about potential vulnerabilities in federal networks and digital infrastructure. Critics argue that bypassing CISA's oversight could expose government systems to unassessed AI-related cybersecurity risks.

Why are policymakers concerned about CISA's current operational capacity?

Policymakers are worried that recent budget cuts and workforce reductions are severely hampering CISA's ability to serve as the central coordinating body for cybersecurity information. These constraints potentially compromise the agency's critical role in protecting state and local election systems and public utilities from emerging digital threats.

LIVE06:13Gemini 3.6 Flash Boosts Coding and Token Efficiency