Z.ai's GLM-5.3 Nears Anthropic's Mythos 5 in Cyber-Defence Tests

Z.ai says its open-source GLM-5.3 model scored 84.5% on CyberGym, just above Anthropic's restricted Mythos 5, but lagged on converting flaws into working attacks.

Last Updated: September 13, 2026 Editorial Process
Editorial Process
See more of Inside AI's trusted news by adding us as a preferred source on Google.
AI neural network visualization
Published on: August 14, 2026

August 14, 2026, (Inside AI) — Chinese startup Z.ai says its open-source GLM-5.3 model nearly matched Anthropic’s restricted Mythos 5 in finding software vulnerabilities. The claim, made Friday, puts a Chinese challenger closer to a U.S. leader in cyber-defense testing.

Z.ai reported GLM-5.3 scored 84.5% on CyberGym, a benchmark for reviewing code and confirming security flaws. That edged out the 83.8% it reported for Mythos 5. The results have not been independently verified.

But the gap widened on turning flaws into working attacks. GLM-5.3 scored 54.4% on ExploitBench, versus 78.0% for Mythos 5. In a timed test, GLM-5.3 completed 105 attack-development tasks in two hours and 130 in six hours. Mythos 5 completed 181 and 247 tasks, respectively.

Anthropic restricts Mythos, a version of its Claude Fable 5 with cybersecurity safeguards removed, to vetted organizations. The company worries such tools can lower barriers for attackers even as they help defenders.

Read: DeepSeek’s V4-Pro-0813 Underwhelms Overall but Excels in Cybersecurity

Z.ai plans to release GLM-5.3 publicly in about two weeks after security assessments. Its most sensitive cybersecurity functions will require a “trusted access” program for verified users.

The company said it added layers of protection: screening risky requests, monitoring outputs, and training the model to reject malicious tasks. It said these separate harmful activity from legitimate uses like bug fixing or authorized security testing.

Critics argue safeguards weaken once a model is released for others to download, alter, or combine with outside tools. That tension frames a broader debate over open versus closed AI security models.

Open-Source Push Targets Restricted Cyber Tools

Z.ai framed the launch as a direct challenge to closed-source Mythos. It argued advanced cyber-defense tools should serve open-source developers and smaller security teams, not just a few closed-model providers.

It announced an “Open Source Shield” initiative to audit selected open-source projects, provide model access for defensive work, and add code-auditing functions to its ZCode programming product.

Z.ai is not the first Chinese company to position a product against Mythos. Cybersecurity firm 360 said in June that its Tulongfeng vulnerability-discovery system achieved Mythos-equivalent capabilities by combining AI models with security data and automated tools. Those claims were also not independently verified.

Read: UPI Platforms Flag Anthropic’s Mythos Preview as Rising Security Threat

GLM-5.3 differs. It is a general-purpose coding model that Z.ai says acquired cybersecurity skills through expanded post-training and reinforcement learning, rather than a purpose-built security system. It uses the same base model as GLM-5.2 but trained in longer, more varied task environments.

GLM-5.2 Momentum Fuels Global Interest

The launch builds on global interest in GLM-5.2, which gained attention among overseas developers for coding and agent capabilities. Users and analysts said it approached leading U.S. models at much lower cost.

That momentum may help Z.ai attract Western developers wary of U.S. export controls and high API prices. But independent verification of GLM-5.3’s security claims remains a key hurdle.

Reporting by Eduardo Baptista. Editing by Mark Potter.

More from Inside AI

  • Features, Interviews, Press Releases

    Beyond Transcripts: Modulate Secures $25M to Scale Frontier Audio-Native AI Architecture Against Monolithic LLMs

    September 28, 2026
  • AI In Business

    NVIDIA Boosts Share Buyback by $150 Billion, Betting Big on AI Future

    September 28, 2026
  • AI Safety

    Stanford Study: Users Trust Sycophantic AI Chatbots Despite Knowing They Lie

    September 28, 2026
  • AI Safety

    Nvidia Launches Open Agent Safety Platform to Stop AI Agents Breaking Out

    September 28, 2026
  • AI In Business

    Why Employees Override AI Systems That Work: The Authority Gap

    September 28, 2026
  • AI Policy & Regulation

    Trump Meets Anthropic CEO Dario Amodei for First Time After Months of AI Tensions

    September 28, 2026
  • AI Hardware & Infrastructure

    Meta Unveils Petal: First Petabit Subsea Cable Linking US and France

    September 28, 2026
  • AI In Business

    Bengaluru Engineer Loses Rs 1.94 Crore in ‘Quantum AI’ Trading Scam

    September 28, 2026

Never Miss a Breakthrough

Join 50,000+ readers who get our daily AI intelligence briefing. No fluff, just what matters.

Join Our Newsletter Community

Subscribe

Inside AI is an independent publication covering artificial intelligence news, machine learning research, and the tools shaping the future of technology. No hype. Just what's happening in the AI world.

Topics

  • Artificial Intelligence
  • Machine Learning
  • Generative AI
  • Agentic AI
  • Vibe Coding
  • Prompt Engineering
  • AI Policy & Regulation
  • AI Hardware & Infrastructure
  • AI Tools
  • AI In Business
  • Robotics
  • Cybersecurity AI
  • AI Safety
  • AI Tools & Reviews (Coming soon)

Company

  • Editorial Standards
  • Privacy Policy
  • Terms of Service
  • Contact
  • About Us

Others

  • Press Releases
  • Features
  • Sponsored Content
  • Advertise with us
  • Newsletter

© 2026 Inside AI. All rights reserved.

Designed by Blue Flare Digital