business Project Glasswing & the Next Wave of AI Cyber Risk: What Businesses Need to Know August 11, 2026 As AI transforms business operations, it’s also reshaping the cyber threat landscape. Discover how Project Glasswing demonstrates the growing risks of AI-enabled attacks and what organizations can do now to stay protected. Quick Takeaways Project Glasswing is an initiative led by Anthropic that uses advanced AI to identify and help remediate software vulnerabilities before they can be exploited.AI models are becoming increasingly capable of finding security flaws, reducing the time and expertise traditionally required to discover vulnerabilities.The same AI capabilities that can strengthen cyber defenses may also enable attackers to identify and exploit weaknesses more quickly.Organizations should expect AI-assisted cyberattacks to become more common and should proactively evaluate their cybersecurity preparedness. Why it mattersProject Glasswing signals a pivotal shift in cybersecurity. As AI becomes more capable of finding and exploiting software vulnerabilities, businesses must prepare for a future where cyber threats evolve faster than ever. The organizations that embrace AI-enhanced defense, modern security practices, and proactive risk management will be best positioned to protect their systems, data, and operations.What is Project Glasswing?Project Glasswing is a cybersecurity initiative (led by AI company Anthropic) that uses advanced AI to find and fix hidden software weaknesses before hackers can exploit them.It was created in response to the growing capabilities of AI models to analyze code and uncover security weaknesses. Anthropic’s Claude Mythos Preview model has pinpointed thousands of previously unknown vulnerabilities across major operating systems, web browsers and critical software components. These growing capabilities, while helpful in some regard, create a growing concern that attackers may be able to find vulnerabilities in business systems. What should businesses do now to prepare?Assume AI assisted attacks are coming- Organizations should prepare for a future where cybercriminals use AI to identify vulnerabilities, automate attacks and create increasingly convincing phishing and social engineering campaigns. Security awareness training, incident response planning, and threat monitoring should be updated accordingly.Modernize vulnerability management- Traditional vulnerability scanning and patching processes may not be enough in an AI-driven threat environment. Businesses should regularly assess their technology stack, prioritize critical vulnerabilities, and accelerate patch management efforts to reduce exposure.Strengthen open-source software oversight- Many organizations rely heavily on open-source software, which powers much of today's technology infrastructure. Businesses should maintain an up-to-date inventory of open-source components, monitor for newly disclosed vulnerabilities, and establish processes for timely updates and remediation. As AI increases the speed of vulnerability discovery, visibility into software dependencies becomes even more important.Invest in secure-by-design practices- Security should be embedded throughout the software development lifecycle, not added as an afterthought. Organizations should adopt secure coding standards, automated security testing, code reviews, and software supply chain protections to reduce vulnerabilities before deployment.Monitor emerging AI security development- As AI capabilities advance, the cybersecurity landscape is evolving quickly. Business leaders, IT teams, and security professionals should stay informed about emerging threats, defensive technologies, regulatory developments, and industry best practices to ensure their cybersecurity strategies remain effective.Key action item checklist: Check out our AI Cybersecurity Readiness Checklist to assess whether your organization is prepared for the next wave of AI-driven cyber risk.