UNIDIR publishes guidance on gender-responsive cybersecurity

The United Nations Institute for Disarmament Research (UNIDIR) has published a compendium of good practices to help governments integrate gender perspectives into cybersecurity policies and strengthen the implementation of responsible state behaviour in cyberspace.

Drawing on a series of multistakeholder workshops held with the Stimson Center in 2025, the report brings together existing initiatives and practical examples from governments and other stakeholders. It also identifies lessons learned and recommendations for incorporating gender considerations into national ICT architectures and implementing the UN Framework for Responsible State Behaviour in Cyberspace.

The compendium covers four themes: the gendered impacts of ICTs, the application of international law in cyberspace, the integration of gender into national cybersecurity institutions and strategies, and gender-responsive cyber capacity building. It also includes practical recommendations and a toolbox of resources for policymakers and practitioners.

UNIDIR said the compendium is intended to help governments and other stakeholders strengthen cybersecurity governance through more inclusive policy development and implementation.

Why does it matter?

The compendium reflects growing recognition that cybersecurity governance should consider how cyber threats, policies and digital technologies affect different groups of people. Rather than treating gender as a standalone issue, the report presents it as an element of effective, inclusive cybersecurity policymaking.

By collecting practical examples and recommendations from governments and the wider multistakeholder community, the publication also supports international efforts to strengthen responsible state behaviour in cyberspace and build more inclusive national cyber capacity.

Would you like to learn more about AI, tech and digital diplomacy? If so, ask our Diplo chatbot

UN Global Mechanism on ICT security identifies ransomware and AI among key global cyber threats

The UN’s new permanent mechanism on international cybersecurity shifted from organisational discussions to substantive exchanges on the evolving cyber threat landscape, with member states identifying ransomware, attacks on critical infrastructure, and the malicious use of AI among the most pressing challenges requiring international cooperation.

Meeting during the first substantive plenary session of the Global Mechanism on Developments in the Field of ICTs in the Context of International Security, delegates also continued discussions on the organisation of the mechanism’s Dedicated Thematic Groups (DTGs), which are expected to play a central role in translating years of normative work into practical cooperation.

While delegations expressed different views on some procedural aspects of the DTGs, there was broad agreement that the groups should focus on practical, action-oriented work and avoid duplicating discussions already taking place during the annual plenary sessions.

Dedicated Thematic Groups take shape

Several delegations described the DTGs as one of the Global Mechanism’s most important innovations, providing an opportunity for more detailed discussions than are possible during formal plenary meetings.

Brazil, Argentina, Chile, Kiribati and New Zealand encouraged the groups to concentrate on a limited number of priority topics capable of producing practical recommendations. Germany similarly proposed focusing on thematically coherent issues, including ransomware and the protection of critical infrastructure, while ensuring that discussions ultimately feed back into the plenary through concrete recommendations.

A recurring message throughout the discussion was that the mechanism should now move from establishing common principles towards supporting their implementation. Several delegations cautioned that attempting to address too many issues simultaneously could reduce the effectiveness of the DTGs, advocating a focused approach instead during their first biennium.

Delegations also highlighted the importance of maintaining predictable working methods, ensuring meaningful participation by all regions, and enabling smaller countries to contribute effectively throughout the process.

Broad support for stakeholder expertise

Another recurring theme was the value of involving technical expertise in DTG work.

Countries from different regions highlighted the contributions that academia, the private sector, civil society, and technical organisations can make to understanding rapidly evolving cyber threats and supporting the implementation of agreed commitments.

Oman stressed that governments alone cannot access all relevant technical knowledge, while Argentina called for transparent and predictable arrangements for stakeholder participation. France argued that cybersecurity requires cooperation across different communities, describing cyber diplomacy as a ‘team sport’. The African Group likewise recognised that expertise from non-state actors complements the intergovernmental character of the mechanism.

Many delegations also underlined that meaningful stakeholder engagement would be particularly valuable during the more interactive discussions planned within the thematic groups.

Ransomware and critical infrastructure emerge as shared priorities

As discussions moved to the evolving cyber threat landscape, a strong degree of convergence emerged across regions.

Ransomware was consistently identified as one of the most significant threats facing governments, businesses, and societies. Delegations pointed to attacks affecting healthcare, public administration, financial services, energy systems, telecommunications, and other essential services.

Several countries drew on national experience to illustrate the impact of such incidents. Costa Rica referred to the disruption caused by major ransomware attacks in 2022, while Ireland highlighted the effects of the 2021 cyberattack on its health service. Singapore noted that nearly 8,000 ransomware incidents were publicly reported worldwide during 2025, underlining the increasingly transnational nature of the threat.

The protection of critical infrastructure also emerged as a common concern. Delegations discussed the resilience of healthcare systems, government services, energy networks, transport infrastructure, telecommunications, and undersea cables, with several suggesting these issues should become early priorities for the DTGs.

AI reshapes the cyber threat landscape

The malicious use of AI featured prominently throughout the session, with delegations from all regions describing its growing impact on cybersecurity.

Countries warned that AI is accelerating the speed and sophistication of cyber operations while lowering barriers to entry for malicious actors. Among the concerns raised were AI-enabled phishing campaigns, automated vulnerability discovery, deepfakes, synthetic media, disinformation, and attacks targeting AI systems themselves.

Several delegations also pointed to emerging challenges, including quantum computing, post-quantum cryptography, commercial spyware, and increasingly sophisticated cybercrime ecosystems. While views differed on whether these developments require new international norms, there was broad recognition that the mechanism should continue examining their implications within its existing mandate.

Capacity building remains central for developing countries

Capacity building remained a cross-cutting priority throughout the session, particularly for developing countries and small island developing states.

The African Group called for practical implementation of existing capacity-building initiatives, including the ICT security cooperation portal, fellowship programmes, and the global network of national points of contact. Other delegations highlighted regional initiatives aimed to strengthening resilience, improving cyber hygiene, and supporting national institutions.

Small island developing states added an important practical perspective to the discussion. Vanuatu described how cyber resilience has become closely linked to disaster preparedness, while Nauru observed that countries connecting to the internet today immediately face the full spectrum of contemporary cyber threats rather than encountering them gradually over time.

The session concluded with the Chair confirming that consultations on the DTGs would continue ahead of their first meetings in December. While some organisational questions remain under discussion, the exchanges demonstrated growing convergence on the substantive issues likely to shape the mechanism’s future work, particularly ransomware, critical infrastructure protection, AI-enabled threats, and strengthening cyber capacity across all regions.

Track all key moments from the First substantive session of the UN Global Mechanism on cybersecurity on our dedicated page.

Would you like to learn more about AI, tech and digital diplomacyIf so, ask our Diplo chatbot!

UN Global Mechanism on cybersecurity begins work with focus on participation and consensus

The United Nations’ new permanent mechanism on international cybersecurity has begun its substantive work, opening a new phase of multilateral discussions on responsible state behaviour in cyberspace.

The first substantive session of the Global Mechanism on Developments in the Field of ICTs in the Context of International Security opened on 20 July at UN Headquarters in New York under the chairmanship of Ambassador Egriselda López of El Salvador. The meeting marked the first time member states had convened within a standing UN framework dedicated to ICT security and responsible state behaviour.

The mechanism succeeds years of negotiations under the Open-Ended Working Group and is intended to provide a permanent, single-track forum for discussions across five established pillars, such as existing and potential ICT threats, rules and norms of state behaviour, the application of international law, confidence-building measures, and capacity development.

In a pre-recorded statement, UN Under-Secretary-General and High Representative for Disarmament Affairs Izumi Nakamitsu described the mechanism as holding ‘tremendous promise’. She highlighted its permanent and consensually agreed character and called for stakeholder engagement to take place in a systematic, sustained, and substantive manner.

A permanent forum takes shape

Opening the session, López described the meeting as a historic moment that would help shape not only the first two-year cycle of the mechanism but also the UN’s wider approach to ICT security in the years ahead.

She acknowledged that the forum was beginning its work amid a complex international environment marked by attacks against critical infrastructure, disruptions to digital supply chains, the use of ICTs in conflicts, and the growing interaction between cybersecurity and emerging technologies such as AI.

The Chair also emphasised that agreement would require sustained diplomatic effort.

‘Consensus is not automatic,’ López told delegations, arguing that it must be built through commitment, flexibility, and political will.

She noted that multilateral processes are often advanced through ‘small steps, difficult compromises, and the willingness to keep talking even when there are differences’.

The session achieved an early procedural milestone with the adoption, by consensus, of the provisional agendas for the 2026 and 2027 plenary sessions. The mechanism also noted its provisional programme of work, creating a framework for the substantive discussions scheduled for the week.

The mechanism tests its approach to stakeholder participation

A substantial part of the opening discussion focused on how non-governmental stakeholders should participate in the mechanism.

Under the agreed accreditation procedure, applications are accepted unless a member state submits a written objection. The Chair reported that she had held consultations with states that raised objections, although the positions of the concerned governments remained unchanged.

Several delegations expressed concern that a large proportion of stakeholder applicants had not received accreditation. They argued that technical experts, civil society organisations, industry representatives, and academic institutions can provide knowledge that supports informed negotiations and practical implementation.

The issue was particularly important for smaller and developing states, some of which said they rely heavily on external partners because they have limited domestic technical and diplomatic capacity.

Kiribati emphasised that technical partners and regional organisations had contributed to its national cybersecurity posture and helped shift international discussions from problem identification to solution delivery. It called for greater transparency around objections, arguing that explanations could help states understand and potentially address the concerns raised.

‘Transparency here costs the objecting state little; silence costs the rest of us a great deal,’ the delegation said.

Other delegations placed greater emphasis on ensuring that participating organisations meet the agreed standards of objectivity and impartiality. They maintained that the non-objection procedure was negotiated by consensus and that states retained the right to raise concerns about individual applicants.

The discussion, therefore, reflected a broader institutional question of how the mechanism can preserve state oversight while gaining access to the technical expertise needed for meaningful cybersecurity cooperation.

Participation rules remain important for thematic work

Delegations also considered how stakeholder participation should function in the Dedicated Thematic Groups scheduled to meet from 7 to 11 December.

The mechanism will operate two such groups. One will address general substantive issues, while the other will focus on capacity development. Their purpose is to enable more detailed and interactive discussions that build on the work of the annual plenary.

Some delegations argued that, because the thematic groups are informal, they should be able to include a wide range of experts and stakeholders without requiring the same accreditation process used for formal plenary sessions.

Others maintained that the agreed participation modalities for the mechanism should apply consistently across all its formats. From this perspective, applying different rules to the thematic groups could weaken their intergovernmental character or create uncertainty over the status of their outcomes.

The debate highlighted the need for predictable working methods before the December meetings. Clear guidance on participation, expert briefings, meeting formats, and reporting procedures will be particularly important for delegations with limited resources.

Procedural questions shape preparations for thematic discussions

The Chair also announced the appointment of four co-facilitators for the thematic groups, selected from Australia, Egypt, Malaysia, and the Netherlands.

López said the appointments reflected geographic and gender balance and that the co-facilitators would serve in their personal capacities under the principles of neutrality, impartiality, and inclusion.

Many delegations welcomed the appointments as a practical step towards ensuring that preparations for the December meetings could move forward. They viewed the selection of facilitators as consistent with practices used in other UN processes.

Other delegations preferred the appointments to be formally agreed upon by consensus among all member states. They argued that the mechanism’s state-led character requires collective agreement on both procedural and substantive decisions.

The exchange demonstrated that the meaning of consensus will remain an important issue as the new forum develops its institutional practices. The challenge will be to preserve the confidence of all states while allowing the mechanism to carry out the organisational work needed to function effectively.

From general debate to practical cooperation

Beyond the procedural questions, delegations began outlining how the thematic groups could contribute to the mechanism’s wider objectives.

Several countries supported focused, scenario-based discussions addressing concrete challenges such as ransomware, attacks against critical infrastructure, AI security, operational technology, quantum readiness, and post-quantum cryptography.

Others emphasised that the groups should maintain a balanced approach across all five pillars of the framework and avoid prioritising specific topics without the agreement of member states.

Capacity development emerged as a particularly important theme. Developing and smaller states highlighted the role of partnerships with governments, international organisations, industry, academia, and civil society in strengthening national cyber resilience.

Questions of accessibility were also raised. Colombia and Mexico called for simultaneous interpretation to support participation by experts from different linguistic communities, while Mauritius stressed the need for clear rules, timelines, and coordination between the two thematic groups.

These proposals suggest that the success of the mechanism will depend not only on reaching agreements at the diplomatic level but also on translating them into practical cooperation that responds to national needs.

Building consensus in a permanent mechanism

The opening plenary showed that establishing a permanent international forum involves more than adopting a mandate. Member states must also develop shared expectations about participation, decision-making, working methods, and the relationship between formal negotiations and technical expertise.

Despite differing interpretations of some procedures, delegations broadly reaffirmed their support for the Global Mechanism and its objective of strengthening international cooperation on ICT security.

The consensus adoption of the agenda provided a foundation for the substantive work ahead. The Chair also pledged to continue consultations with states and maintain sustained dialogue with stakeholders.

The mechanism’s first session, therefore, represents both an institutional achievement and an early test of multilateral cooperation. Its ability to deliver practical results will depend on whether member states can balance inclusivity, state leadership, procedural predictability, and the consensus principle on which the forum was founded.

As the mechanism moves towards its first Dedicated Thematic Group meetings in December, the immediate priority will be to turn its permanent mandate into working arrangements capable of supporting trust, resilience, and responsible state behaviour in cyberspace.

Track all key moments from the First substantive session of the UN Global Mechanism on cybersecurity on our dedicated page.

Would you like to learn more about AI, tech and digital diplomacyIf so, ask our Diplo chatbot!

White House launches GOLD EAGLE cybersecurity initiative

The White House has announced the launch of GOLD EAGLE, a cybersecurity vulnerability coordination initiative established under President Donald Trump’s Executive Order 14410, Promoting Advanced Artificial Intelligence Innovation and Security.

According to the administration, the initiative brings together federal agencies, open-source software partners and operators of critical infrastructure to accelerate the identification and remediation of cybersecurity vulnerabilities using AI.

The initiative is being implemented through collaboration between the White House, the Department of the Treasury, the Department of Homeland Security, including the Cybersecurity and Infrastructure Security Agency (CISA), and the Department of War. The administration said GOLD EAGLE is intended to reduce duplicative vulnerability scanning, improve exploit detection and provide prioritised threat and remediation information to government and private-sector defenders.

According to the announcement, GOLD EAGLE has already begun receiving and prioritising reported cybersecurity vulnerabilities from multiple sectors, coordinating verification efforts and supporting remediation activities. The White House said the initiative represents a new operational model for cyber defence that combines government resources with private-sector capabilities to strengthen the resilience of critical infrastructure and software systems.

Why does it matter?

GOLD EAGLE marks a shift towards more centralised public-private coordination of cybersecurity vulnerability management in the USA. By combining AI-assisted vulnerability prioritisation with information sharing across government agencies and critical infrastructure operators, the initiative aims to accelerate the detection and remediation of cyber threats.

It also reflects the Trump administration’s broader strategy of linking AI innovation with national cybersecurity and critical infrastructure protection.

Would you like to learn more about AI, tech and digital diplomacy? If so, ask our Diplo chatbot

Spain promotes national cybersecurity support helpline

Spain’s National Cybersecurity Institute (INCIBE) has highlighted its free and confidential 017 helpline, which provides specialist advice on digital security issues for citizens, businesses, professionals and educational institutions.

The helpline provides guidance on scams, phishing, identity theft, compromised accounts, social media privacy, cyberbullying, device security and protecting personal information. It also advises on parental controls, online child safety, digital identity management and the safe use of apps and social media platforms.

INCIBE stressed that 017 is a cybersecurity advisory service rather than a reporting channel or technical support line. Specialists explain appropriate reporting procedures, direct users to the relevant authorities where necessary and assess each case individually.

The service is available daily from 8:00 to 23:00 via telephone, WhatsApp, Telegram, an online form and, by appointment, in person at INCIBE’s headquarters in León.

Why does it matter?

As cyber threats become more common, many users need trusted advice before or after an incident rather than only technical assistance or law enforcement support. Services such as INCIBE’s 017 helpline can help individuals and organisations respond more effectively while improving awareness of everyday cyber risks.

The initiative also reflects a broader shift towards strengthening national cyber resilience through public support services. By combining technical, legal and practical guidance in a single point of contact, governments can encourage earlier reporting, better cyber hygiene and more effective responses to digital security incidents.

Would you like to learn more about AI, tech and digital diplomacy? If so, ask our Diplo chatbot

EU expands cybersecurity and resilience support for Armenia

The Council of the EU has officially launched the EU Partnership Mission in Armenia (EUPM Armenia), a new civilian mission under the Common Security and Defence Policy (CSDP) that will help strengthen the country’s resilience against hybrid threats, including cyberattacks and disinformation.

The advisory mission, established in April 2026 at the request of the Armenian government, will initially operate for two years.

EUPM Armenia will provide strategic advice, technical expertise and institutional capacity-building in areas including cybersecurity, foreign information manipulation and interference (FIMI), and illicit financial flows.

The mission will also establish a dedicated project cell to deliver targeted assistance while promoting a whole-of-government approach to tackling hybrid threats. The Council stressed that the mission is advisory in nature and will not participate in Armenia’s national decision-making.

According to the Council, the mission forms part of the EU’s broader strategy to strengthen Armenia’s resilience, democratic institutions and security capabilities while fully respecting the country’s sovereignty and ownership.

The mission follows the adoption of the EU-Armenia Strategic Agenda in December 2025, which identified countering hybrid threats and disinformation as key priorities for bilateral cooperation. Cosmin George Dinescu has been appointed Head of Mission.

EU High Representative Kaja Kallas described the deployment as part of a broader package of political and economic support for Armenia. She said the mission would help strengthen Armenia’s ability to respond to cyber threats, disinformation and illicit financial flows while increasing its resilience to external pressure.

Why does it matter?

The launch of EUPM Armenia reflects the EU’s growing focus on civilian security and resilience alongside traditional defence cooperation. By providing expertise on cybersecurity, disinformation and institutional resilience rather than military assistance, the mission illustrates how the EU is increasingly addressing hybrid threats through governance, capacity-building and technical cooperation.

The mission also highlights the expanding role of cybersecurity and information resilience in international partnerships. As hybrid threats become more sophisticated, governments are placing greater emphasis on strengthening institutions and public-sector capabilities before crises emerge rather than responding after attacks occur.

Would you like to learn more about AI, tech and digital diplomacyIf so, ask our Diplo chatbot!

EU unveils AI cybersecurity Action Plan

The European Commission has published an Action Plan to address the cybersecurity risks and opportunities created by advanced AI models. Released on 7 July 2026, the initiative sets out a coordinated approach to strengthening Europe’s cyber resilience as AI capabilities continue to advance.

The Action Plan brings together member states, industry and EU institutions to coordinate responses to AI-related cybersecurity challenges. Rather than introducing new legislation, it builds on the EU’s existing regulatory framework while adapting it to risks posed by increasingly capable AI systems.

The Commission says the plan will strengthen defences against vulnerabilities that AI systems may introduce or exploit. It also promotes closer cooperation between public and private stakeholders, reflecting the view that AI governance and cybersecurity must increasingly be treated as interconnected policy areas.

The Action Plan forms part of the EU’s broader strategy to strengthen digital resilience while maintaining technological competitiveness. Its implementation will depend on cooperation between governments, regulators, businesses and cybersecurity organisations across the Union.

Why does it matter?

The Action Plan reflects growing recognition that advanced AI models are changing the cybersecurity landscape by strengthening defensive capabilities while also creating new opportunities for attackers. As AI systems become more capable and autonomous, policymakers are increasingly treating AI safety and cybersecurity as part of the same strategic challenge.

The initiative also reinforces the EU’s broader digital sovereignty agenda. Rather than creating separate policies for AI and cybersecurity, the Commission is integrating the two into a common governance framework. That approach could influence how organisations deploy AI in critical sectors and provide a model for other jurisdictions developing AI cybersecurity strategies.

Would you like to learn more about AI, tech and digital diplomacy? If so, ask our Diplo chatbot

European Commission takes four countries to EU court over NIS2 delays

The European Commission has referred Ireland, Spain, France and the Netherlands to the Court of Justice of the European Union for failing to transpose the NIS2 Directive fully into national law.

The Directive strengthens the EU cybersecurity rules and sets common requirements for organisations operating in critical sectors.

Member states were required to transpose NIS2 by 17 October 2024, but the four countries have not notified the Commission of full implementation.

The referrals follow earlier infringement steps. The Commission sent letters of formal notice on 28 November 2024 and reasoned opinions on 7 May 2025.

The Commission is asking the Court to impose financial sanctions, including a lump sum and daily penalties until the countries notify complete transposition.

NIS2 applies to entities in 18 critical sectors, including health, energy, transport and public administration.

The Directive aims to improve national and EU-wide cyber resilience by strengthening risk management, incident response and security obligations for public and private entities.

The Commission said full implementation is essential for improving the EU’s overall resilience and the incident response capacity of organisations operating in critical sectors.

Why does it matter?

The referral shows that the Commission is prepared to enforce cybersecurity law against member states that fail to meet implementation deadlines. NIS2 is designed to create a more consistent baseline of cyber resilience across the EU, but delays in national transposition can leave organisations facing fragmented obligations and uneven enforcement. For critical sectors, consistent implementation is central to risk management, incident response and cross-border resilience.

Would you like to learn more about AI, tech and digital diplomacyIf so, ask our Diplo chatbot!

Claude Fable 5, frontier AI models and the future of cybersecurity

The release of Anthropic’s Claude Fable 5 may prove to be one of the most significant AI developments of 2026. At first glance, the launch appeared to be another milestone in the rapidly evolving frontier AI landscape, showcasing improvements in reasoning, software engineering and complex problem solving.

Yet within days, Fable 5 became the centre of an international debate involving cybersecurity, national security, export controls and technological sovereignty.

Anthropic introduced Fable 5 as a public-facing version of its more advanced Mythos 5 model, offering access to frontier-level capabilities while incorporating additional safeguards designed to limit misuse in sensitive domains.

Anthropic has launched Claude Fable 5

The company presented the model as a major step forward in AI performance, particularly in coding, reasoning and autonomous task completion. However, concerns surrounding its cybersecurity capabilities quickly caught the attention of policymakers and security agencies.

The situation escalated when the USA imposed export control restrictions, affecting access to Anthropic’s most advanced models. What began as a product launch rapidly evolved into a broader discussion about whether frontier AI systems should be treated as strategic technologies comparable to advanced semiconductors, encryption systems, or critical infrastructure.

The story, however, did not end there. Less than three weeks later, the US government lifted the restrictions after Anthropic introduced additional safeguards, strengthened collaboration with federal authorities, and agreed to participate in a broader framework for evaluating frontier AI security.

Rather than representing a simple regulatory dispute, the episode demonstrated how frontier AI governance is becoming an evolving process built upon continuous technical assessment, industry cooperation, and government oversight.

The Fable 5 episode highlights a reality that is increasingly difficult to ignore. AI is no longer simply a tool for productivity and innovation. Frontier models are emerging as technologies with profound implications for cybersecurity, national defence, economic competitiveness, and international relations.

As governments and companies struggle to understand the opportunities and risks associated with increasingly capable AI systems, Fable 5 offers an early glimpse into what could become one of the defining policy debates of the coming decade.

The rise of frontier AI models

The concept of a frontier AI model refers to the most advanced systems available at a given moment. These models represent the leading edge of AI capabilities and often demonstrate performance levels significantly beyond previous generations.

Claude Fable 5 belongs to this category. Anthropic designed the model to perform complex reasoning tasks, analyse large quantities of information, generate software code and assist users with sophisticated technical challenges.

Unlike earlier generations of AI assistants that primarily focused on conversational interactions, frontier models increasingly function as problem-solving systems capable of performing intricate tasks across multiple domains.

One of the most notable characteristics of Fable 5 is its ability to assist with software engineering and technical analysis. The model can review source code, identify patterns, suggest improvements and help users navigate highly complex technical environments.

Such capabilities are particularly valuable in cybersecurity, where analysts often face enormous volumes of code, logs and threat intelligence data.

Behind Fable 5 is Mythos 5, a model that Anthropic initially released only to trusted participants in Project Glasswing, a programme focused on defensive cybersecurity research.

More organisations gain access through Anthropic to advanced AI cyber defence tools.

While Mythos offers stronger offensive cybersecurity capabilities for vetted organisations, Fable 5 was designed for broader public use with significantly stronger safeguards that limit potentially dangerous behaviour without substantially reducing its usefulness for legitimate applications.

Anthropic has emphasised that Fable 5 was subjected to extensive testing and red teaming before its release. In the weeks preceding its launch, the company reportedly reassigned researchers and engineers from multiple teams to strengthen its cybersecurity protections, reflecting a growing recognition that frontier models require safety engineering on a scale previously unseen in commercial AI development.

The challenge is that the same qualities that make frontier models like the Fable 5 valuable also make them strategically important. As AI capabilities continue to advance, governments increasingly view these systems not merely as software products but as assets with potential national security implications.

Why the USA intervened

The US decision to restrict access to Anthropic’s most advanced models marked a significant turning point in the AI governance debate.

Historically, the release of AI systems has largely been managed by technology companies themselves. Governments have generally focused on regulation and oversight rather than direct intervention in model availability.

The response to Fable 5 suggests that such an approach may be changing.

The primary concern involved cybersecurity capabilities. Mythos-class models demonstrated the ability to identify software vulnerabilities and assist with highly advanced technical analysis. While such capabilities offer substantial defensive benefits, they also raise concerns about potential misuse.

The immediate trigger came after Amazon researchers identified a technique capable of bypassing some of Fable 5’s cybersecurity safeguards.

During testing, the model successfully identified several software vulnerabilities and, in one instance, generated code illustrating how one of those vulnerabilities could be exploited.

Although Anthropic argued that comparable outputs could also be obtained from several existing AI models and that the behaviour did not expose Mythos-level offensive capabilities, the incident convinced US authorities that additional safeguards were necessary before wider deployment.

From a national security perspective, policymakers increasingly fear that highly capable AI systems could assist malicious actors in discovering vulnerabilities, developing exploits or conducting cyber operations at a scale that exceeds existing defensive capabilities.

As a result, access to frontier models is beginning to resemble access to other strategically important technologies.

The restrictions also generated controversy because they affected not only geopolitical competitors but also close allies.

Since Anthropic had no practical method for verifying users’ nationality in real time, it temporarily suspended access to both Fable 5 and Mythos 5 for all users rather than attempting selective enforcement.

The incident highlighted the growing reality that access to frontier AI may increasingly become subject to geopolitical considerations.

Yet the restrictions ultimately proved temporary. Following intensive collaboration between Anthropic, Amazon, and US government agencies, the Department of Commerce lifted the export controls after Anthropic implemented stronger safeguards.

US Commerce Department Anthropic Claude Fable 5

The company introduced a new safety classifier capable of blocking reported behaviour in more than 99% of tested cases while redirecting potentially dangerous requests to its less capable Opus 4.8 model.

The episode represents a significant shift in frontier AI governance. Rather than relying solely on regulation or voluntary commitments, governments and developers increasingly appear to favour continuous technical evaluation, rapid safeguard improvements and close operational cooperation.

AI as a cybersecurity defender

Despite concerns about misuse, the defensive potential of frontier AI models is immense.

Cybersecurity professionals face an increasingly difficult environment. Organisations must defend against ransomware groups, state-sponsored actors, supply chain attacks, phishing campaigns and countless other threats.

At the same time, many organisations struggle with cybersecurity talent shortages and limited resources.

Frontier models offer a potential solution.

Systems such as Fable 5 can analyse software code, identify vulnerabilities, process threat intelligence and support incident response activities at speeds that would be impossible for human analysts alone. Tasks that previously required days of manual effort can often be completed in minutes.

The implications extend well beyond private sector organisations. Governments, healthcare providers, financial institutions, energy companies and critical infrastructure operators could all benefit from AI-assisted security capabilities.

Frontier models may help defenders identify vulneabilities before attackers discover them, improving overall resilience across digital ecosystems.

Anthropic argues that Mythos 5 was specifically developed to support trusted organisations engaged in defensive cybersecurity. Rather than serving as an offensive cyber tool, the model is intended to accelerate vulnerability discovery, strengthen software security and improve defensive research.

In many respects, it illustrates the central dilemma surrounding frontier AI. The same capability that appears dangerous in one context may become invaluable when deployed responsibly by trusted defenders.

The US government has increasingly recognised the potential. Recent policy initiatives encourage frontier AI developers to collaborate with federal agencies through pre-release testing, shared evaluations and coordinated threat intelligence.

Anthropic has now committed to expanding that cooperation by providing designated government partners with early access to future frontier models, supporting joint research efforts and participating in security evaluations before broader public deployment.

Perhaps most importantly, the Fable 5 episode demonstrates that cybersecurity is becoming one of the primary drivers of frontier AI development.

While public attention often focuses on conversational abilities or creative applications, governments increasingly judge advanced models by their ability to strengthen national cyber resilience.

As cyber threats continue to grow in scale and sophistication, frontier AI like Fable 5 may become an indispensable component of future defensive strategies.

The emergence of the AI-enabled attacker

The problem is that cybersecurity has always been a dual-use domain. Every major defensive innovation has historically created new opportunities for offensive actors, and frontier AI models are unlikely to be an exception.

Ironically, the same capabilities that help defenders can often help attackers.

A model capable of identifying vulnerabilities can potentially assist malicious actors in locating weaknesses within software systems. A system that helps defenders analyse code can also support offensive security research.

Likewise, a model capable of generating scripts for legitimate automation may also assist with harmful activities if appropriate safeguards are bypassed.

Frontier AI cybersecurity

Such a reality has led many experts to describe frontier AI as both a shield and a sword.

Security agencies have repeatedly warned that AI is lowering the barriers to entry for cybercriminals. Activities that once required extensive technical expertise may become increasingly accessible through AI assistance.

Phishing campaigns, malware development, reconnaissance operations, exploit research, and vulnerability discovery could all become faster and considerably more efficient.

The concern that extends beyond individual hackers is that organised cybercriminal groups and state-sponsored actors already possess substantial technical expertise.

Frontier AI does not necessarily replace that expertise, but it has the potential to amplify it significantly. Operations that previously required specialised teams and considerable preparation may eventually be conducted more rapidly, with greater precision, and at a much larger scale.

The emergence of AI agents further increases these concerns. Unlike traditional chat-based assistants, autonomous agents are increasingly capable of performing multi-step tasks with limited human supervision.

In a cybersecurity context, Fable 5 and similar systems could theoretically identify vulnerabilities, gather intelligence, write software, execute defensive workflows, or assist with incident response almost autonomously. The same autonomy, however, could also be abused if deployed for malicious purposes.

Rather than eliminating cyber threats, frontier AI may fundamentally change the nature of digital conflict. Success may increasingly depend not only on technological capability but also on who can adapt more quickly as AI systems continue to evolve.

The limits of safety guardrails

Recognising the risks associated with powerful AI systems, Anthropic implemented extensive safeguards within Fable 5.

The company sought to make the model widely accessible while limiting its ability to assist with highly sensitive activities. Certain cybersecurity, biological and other high-risk requests are subject to additional restrictions. Anthropic has argued that such measures significantly reduce the likelihood of misuse.

Unlike previous generations of AI models, Fable 5 relies on multiple overlapping layers of protection rather than a single safety mechanism. Anthropic describes this approach as defence in depth.

Fable 5 Anthropic multilayer protection AI model

The model combines behavioural training, specialised safety classifiers, continuous monitoring, and post-deployment analysis to detect potentially harmful cybersecurity requests before they reach the model itself.

One of the most important components of the system is the use of dedicated safety classifiers. These smaller AI systems analyse prompts in real time to determine whether they involve potentially dangerous cybersecurity activities.

Requests that appear harmful or sufficiently ambiguous are blocked before the model generates a response.

Following the June export control directive, Anthropic introduced an improved classifier specifically designed to detect the jailbreak technique identified by Amazon researchers. According to the company, the updated safeguard blocks the reported behaviour in more than 99 per cent of tested cases.

An additional layer of protection redirects blocked requests away from Fable 5 altogether. Instead of simply refusing to respond, certain requests are automatically transferred to Anthropic’s less capable Opus 4.8 model, allowing legitimate users to continue working while preventing access to Fable 5’s more advanced cybersecurity capabilities.

Yet the broader AI industry has learned that no safeguard system is perfect.

Researchers continue to demonstrate that even highly protected frontier models remain vulnerable to sophisticated jailbreak techniques and adversarial attacks. Determined users often find creative ways to circumvent restrictions, particularly when motivated by financial gain or malicious intent.

Anthropic itself acknowledges that it is probably impossible to develop a frontier AI model that is completely immune to jailbreaks. Rather than pursuing absolute protection, the company aims to make successful attacks sufficiently difficult, resource-intensive, and technically demanding enough to make the overwhelming majority of malicious attempts impractical.

Such a philosophy represents an important evolution in AI safety. Security is no longer viewed as a binary condition in which systems are either safe or unsafe. Instead, it is increasingly understood as a continuous process of risk reduction, rapid adaptation, and ongoing improvement.

Does it mean that safeguards are ineffective?

On the contrary, they play a critical role in reducing risk and raising barriers to misuse. However, the Fable 5 debate illustrates that AI safety should be understood as an ongoing process rather than a final destination.

As frontier models become increasingly capable, organisations will need to invest continuously in monitoring, testing and improving security measures. The challenge is not simply to build safeguards but to adapt them within an environment where both AI capabilities and attack techniques evolve rapidly.

AI sovereignty and strategic dependence

Perhaps the most unexpected consequence of the Fable 5 controversy was the renewed focus on AI sovereignty.

AI sovereignty security infrastructure

For years, discussions about technological sovereignty centred on semiconductors, telecommunications infrastructure and cloud computing. Frontier AI models are now becoming part of this debate.

The temporary disruption of access to Anthropic’s most advanced systems demonstrated how governments, businesses and research institutions can become dependent on technologies they do not control.

If access to frontier AI can be restricted through export controls or national security directives, organisations may face strategic vulnerabilities similar to those associated with dependence on foreign energy supplies or critical infrastructure.

Although the restrictions were ultimately lifted, the episode served as an important reminder that access to frontier AI increasingly depends not only on technological capability but also on trust between governments, developers and international partners.

Anthropic’s decision to strengthen safeguards, deepen cooperation with US authorities and expand information sharing became central to restoring global access to Fable 5.

The issue is particularly relevant for the EU and other allied nations. Many countries possess strong AI research communities but remain dependent on a relatively small number of companies for access to the world’s most advanced models.

As a result, policymakers are increasingly discussing sovereign AI capabilities, domestic model development and technological autonomy. What once seemed like a long-term aspiration is now viewed by many as an urgent strategic consideration.

The Fable 5 episode revealed that access to AI itself could become a geopolitical issue.

Frontier models and the future of cybersecurity

Looking ahead, frontier AI models are likely to transform cybersecurity in ways that far exceed current debates.

Future defensive systems could continuously monitor networks, analyse software, identify vulnerabilities, and recommend mitigations with minimal human intervention.

AI-powered assistants could become standard components of security operations centres, helping analysts respond to threats more effectively.

At the same time, offensive capabilities are likely to evolve. Adversaries may use AI to automate reconnaissance, analyse targets and adapt attack strategies dynamically. Cybersecurity may increasingly involve interactions between competing AI systems rather than interactions solely between human operators.

Some experts argue that the future of cyber conflict will be defined by machine-versus-machine competition, with humans providing oversight and strategic direction rather than performing every operational task themselves.

Equally significant is the emerging effort to establish common security standards for frontier AI.

One of the most important outcomes of the Fable 5 controversy has been Anthropic’s collaboration with Amazon, Microsoft, Google and other Project Glasswing partners to develop a shared framework for evaluating AI jailbreaks.

The proposed methodology assesses capability gains, breadth of misuse, ease of weaponisation, and discoverability, creating a common language through which developers and governments can evaluate the severity of newly identified vulnerabilities.

If successful, such a framework could play a role similar to the Common Vulnerability Scoring System, which has long provided the cybersecurity community with a common method for assessing software vulnerabilities.

Standardising how AI jailbreaks are evaluated would enable developers to prioritise responses more consistently while allowing governments to better understand the actual level of risk posed by newly discovered attacks.

The initiative also reflects a broader shift in frontier AI governance. Rather than relying exclusively on post-deployment regulation, governments and developers are increasingly cooperating during the development process through pre-release testing, shared evaluations, coordinated threat intelligence, and continuous red teaming.

2151977487

Such a future offers enormous potential benefits. It could significantly improve security outcomes, reduce response times, and strengthen resilience across critical infrastructure sectors.

Yet it also introduces new challenges involving accountability, transparency, control, and governance. Ensuring that increasingly autonomous systems remain aligned with human objectives will become one of the central cybersecurity questions of the AI era.

Conclusion

The release of Claude Fable 5 may ultimately be remembered as more than a technological milestone. It represents one of the clearest examples to date of how AI, cybersecurity, national security, and technological sovereignty are becoming deeply interconnected.

For defenders, frontier AI models offer unprecedented opportunities to strengthen security, improve resilience, and respond more effectively to an increasingly complex threat environment. For attackers, many of the same capabilities create opportunities to automate, scale, and enhance malicious operations.

The resulting tension lies at the heart of the Fable 5 debate. Frontier AI is neither inherently beneficial nor inherently harmful. Its impact depends on how it is developed, governed, and deployed.

Perhaps the most important lesson from the Fable 5 episode is that frontier AI governance is beginning to move from theory to practice.

The rapid sequence of export controls, technical reviews, stronger safeguards, renewed deployment and closer cooperation between Anthropic and the US government demonstrates that innovation and security do not necessarily have to be in opposition.

Instead, they increasingly depend on continuous collaboration between governments, researchers, technology companies, and the broader cybersecurity community.

Ultimately, we may remember Fable 5 not simply as another AI product launch, but as one of the first moments when the world began to recognise that access to advanced AI could become a strategic issue in its own right.

As governments, organisations, and citizens, each of us is becoming part of that transition.

The challenge is no longer whether AI will reshape cybersecurity, but whether we can establish the trust, standards and international cooperation necessary to ensure that frontier models like Fable 5 strengthen digital resilience rather than undermine it for generations to come.

Would you like to learn more about AI, tech and digital diplomacyIf so, ask our Diplo chatbot!

Singapore proposes Digital Infrastructure Bill to strengthen cloud security

Singapore has launched a public consultation on a proposed Digital Infrastructure Bill that would establish a comprehensive regulatory framework for major cloud computing services and data centres.

Published jointly by the Ministry of Digital Development and Information and the Infocomm Media Development Authority (IMDA), the draft legislation aims to strengthen the resilience and security of critical digital infrastructure while introducing mandatory environmental sustainability standards for data centre operations.

The Bill recognises digital infrastructure as a foundation of Singapore’s digital economy, supporting services ranging from digital banking and e-commerce to cloud platforms and public administration. Unlike earlier amendments to the Cybersecurity Act, which focused primarily on cyber risks, the proposal extends regulatory oversight to operational resilience, business continuity, disaster recovery and environmental sustainability.

A central feature is a new licensing regime for major foundational digital infrastructure (FDI) providers. Cloud providers generating at least S$100 million annually from Singapore-based customers through Infrastructure-as-a-Service (IaaS) and Platform-as-a-Service (PaaS) offerings would require a major FDI licence.

Cloud and colocation data centres with a critical IT load of at least 10 megawatts serving third parties would also fall within the regime. Licensed providers will be required to implement robust physical security and cybersecurity measures, maintain business continuity and disaster recovery plans, and report cybersecurity incidents and service disruptions to IMDA.

The Bill also establishes a separate licensing regime for data centres with a critical IT load of at least 3 megawatts. In addition to operational capability, applicants would be assessed against energy efficiency, water efficiency and broader sustainability criteria.

Beyond operational capability, applicants will be assessed on energy efficiency, water efficiency and broader sustainability considerations. Licensed operators will initially need to comply with facility-level Power Usage Effectiveness (PUE) requirements, while the legislation enables future regulations covering IT equipment efficiency and water consumption.

Singapore’s Green Data Centre Roadmap and previous voluntary industry standards will therefore evolve into legally enforceable baseline requirements across the sector.

IMDA would receive broad enforcement powers, including the authority to grant, suspend and revoke licences, issue binding codes of practice, conduct investigations and impose financial penalties. The Bill also proposes amendments to Singapore’s Cybersecurity Act to ensure consistency across the country’s digital infrastructure framework. Public consultation remains open until 22 July 2026.

Why does it matter?

The proposed legislation reflects a growing shift in how governments view digital infrastructure. As cloud computing and data centres become increasingly critical to AI, financial services and public administration, policymakers are expanding regulation beyond cybersecurity to include operational resilience, business continuity and environmental sustainability.

Singapore’s approach could also serve as a model for other digital hubs. By combining resilience requirements, licensing, cyber oversight and sustainability obligations within a single regulatory framework, the Bill illustrates how governments are adapting infrastructure governance to support the rapid growth of cloud services and AI-driven computing.

Would you like to learn more about AI, tech and digital diplomacyIf so, ask our Diplo chatbot!