OpenAI and Anthropic's models attacked real companies during safety tests, and most victims never noticed
… Across 122 runs of a cyber range, AISI catalogued 19 actions taken against real people and organisations on the live internet, 17 of them from Mythos 5 and two from GPT-5.6 Sol. …