Anthropic expands Cyber Verification Program with three access tiers
AI

Anthropic expands Cyber Verification Program with three access tiers

TechNews Editorial
TechNews EditorialOct 7, 2026 · 2 min read
Share

Why it matters

According to Anthropic, the tiers give verified defenders access to advanced Claude models with cyber blocks matched to their authorized work.

The facts

  • Anthropic expanded its Cyber Verification Program to three access tiers for verified security professionals.
  • The tiers cover defensive work, authorized penetration testing and specialized safety systems.
  • Applications are open; Anthropic says Enterprise Frontier Safeguards will become available later this fall.

Anthropic has expanded its Cyber Verification Program into three access tiers for verified security professionals. The tiers give qualifying users access to advanced Claude models with fewer blocks on cyber tasks, with the level of access tied to the work they are authorized to do.

Each tier includes access to Claude Opus 5.5, Claude Sonnet 5.5 and Claude Mythos 5.1, as well as new models moving forward. Anthropic says the expanded program combines its previous Cyber Verification Program with Project Glasswing, which gave a group of organizations access to Claude Mythos for security work.

Access depends on the security work

Defense Access covers work such as incident response, malware analysis and vulnerability validation. Security teams at companies, nonprofits, universities and government bodies can apply, along with critical infrastructure operators, smaller security firms, open-source maintainers and individual researchers with a record of reporting vulnerabilities. Anthropic says it aims to respond to these applications within a few days.

Red Team Access also permits authorized penetration testing. It is currently limited to organizations, and Anthropic expects reviews to take a few weeks. Qualifying applicants will receive Defense Access during that review. Real-time blocks will still apply to actions that could cause physical harm or mass disruption, including ransomware deployment and testing high-risk safety systems.

Specialized Access has the fewest cyber blocks. Anthropic says it is reserved for a limited set of verified organizations authorized to test safety systems that could affect lives or disrupt markets. The company reviews each organization in depth with the United States government. Existing Project Glasswing members will move to this tier without reapproval for current models.

Security specialists present safety-system testing documentation to institutional reviewers, who examine the evidence and collect reviewed records.
Illustration: AI & Tech News

Anthropic sets retention and platform rules

Organizations in the program must retain data so Anthropic can monitor for cyber misuse. Until its Enterprise Frontier Safeguards service is available, organizations that already have zero data retention access to Claude Fable 5.1 or Claude Mythos 5.1 can also use the program with zero data retention.

Applications are open. Existing program members will keep their settings for previous models and will be automatically evaluated for access to the three named models, though admins must assign access to specific workspaces. The program is available on Claude Platform, Google Cloud’s Vertex AI and Microsoft Foundry. On Amazon Bedrock, it is available only to customers eligible for Enterprise Frontier Safeguards. Anthropic says that service will become available later this fall, when eligible organizations will be able to store data in cloud infrastructure they control.

Source: Anthropic

Newsletter

Get the best AI & tech news daily

A concise daily digest. Unsubscribe anytime.

We use your email only to send this newsletter.

Keep reading