Robin’s Newsletter #409

19 April 2026. Volume 9, Issue 16
UK Gov send open letter to companies on AI cyber threat. Virginia bans sale of precise geolocation data. No honour amongst thieves.
Join hundreds of subscribers who get this first, every Sunday. Subscribe

This week

Need to Know, 19th April 2026

  • UK Government open letter to companies on AI cyber threats
  • Mythos performs, though AISI range lacks real-world cyber defences
  • OpenAI expands Trusted Access for Cyber Programme

Interesting stats

2.3 billion tokens, costing  $2,283 in API costs, required to get Claude’s current Opus model to create a working exploit.

Five Three things

All AI-focused this week, hopefully grounded in what you need to know, rather than hype dominating lots of discussion last week.

  1. The UK government sent an open letter to businesses on AI cyber threats, partly in response to Anthropic’s Mythos announcement. The TL;DR is that AI is advancing more rapidly than envisaged - doubling in capability every 4 months, instead of 8 months as previously thought - however, the fix is simple: top management must take cyber seriously, and get the basics (Cyber Essentials) right. 

  2. The AI Security Institute (AISI) evaluation goes into detail about the performance and relative token cost of models released since November 2022. As well as overall capability, the report focuses on efficiency — the number of tokens needed to achieve a result.  The most complex test, dubbed The Last Ones, is a 32-step simulated corporate network attack intended to be the sort of chained attack that might take a human 20 hours to complete in a CTF setting. Mythos Preview, Opus 4.6, and GPT-4.5 all used 10x100M tokens to achieve an average of 22, 16, and 13 steps, respectively. Mythos Preview completed the 32-step course in 3 out of 10 attempts. However, as AISI notes, their range “lack[s] security features that are often present, such as active defenders and defensive tooling. There are also no penalties for the model for undertaking actions that would trigger security alerts.” AISI concludes that it’s not clear if Mythos would actually perform in real-world, well-defended systems.

Average number of steps completed on ‘The Last Ones’ (a 32-step simulated corporate network attack) as a function of total token spend. (Source: AISI)

  1. Bruce Schneier’s post, co-written with David Lie, is a well-balanced account that cuts through the hype to point out the success rate of Mythos is unknown, that smaller, cheaper models have had similar successes, and the need for greater transparency, rather than private companies chasing which parts of global infrastructure get defended first. With OpenAI claiming their next cyber model needs “strong” Know-Your-Customer (KYC) rules to restrict access (more),  I wonder if governments will consider ramping up regulation (and if this might curtail this sort of announcement)?

In brief

And finally

  • No honour amongst thieves: the 0APT ransomware group is threatening to expose the identities of fellow criminals Krybit. What stands out here is that it’s a ransomware group attempting to extort another, running the same playbook as they would against typical victims. On their leak site, 0APT said Krybit poses ‘significant risks’ and that “If the group does not make the payment or contact us, we will reveal their identity, photos, names, location, and other.” 0APT added, “And if you are one of their victims, contact us to get your data unlocked.”
Robin
  Anthropic Claude Artificial Intelligence (AI) OpenAI Artificial Intelligence Security Institute (AISI) Operational Technology (OT) Security Labels National Vulnerability Database Geolocation Sovereignty