{"id":60338,"date":"2026-04-11T22:47:46","date_gmt":"2026-04-11T17:17:46","guid":{"rendered":"https:\/\/officechai.com\/?p=60338"},"modified":"2026-04-11T22:47:50","modified_gmt":"2026-04-11T17:17:50","slug":"anthropic-and-openai-are-exaggerating-cybersecurity-risk-says-hacker-george-hotz","status":"publish","type":"post","link":"https:\/\/officechai.com\/ai\/anthropic-and-openai-are-exaggerating-cybersecurity-risk-says-hacker-george-hotz\/","title":{"rendered":"Anthropic and OpenAI Are Exaggerating Cybersecurity Risk, Says Hacker George Hotz"},"content":{"rendered":"\n<p>Claude Mythos has created quite a buzz with its cybersecurity concerns, but a prominent cybersecurity expert has said that those risks might be overblown.<\/p>\n\n\n\n<p>George Hotz \u2014 the hacker who famously jailbroke the iPhone and PlayStation 3, and now serves as President of autonomous driving startup comma.ai \u2014 took to LinkedIn to challenge the safety narrative being pushed by the two biggest names in frontier AI. His provocation was blunt: &#8220;What if I release one zero day a day until a big new model is released? Will this finally make OpenAI and Anthropic shut up about &#8216;cybersecurity risk&#8217;?&#8221;<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img data-recalc-dims=\"1\" height=\"456\" width=\"640\" decoding=\"async\" data-src=\"https:\/\/i0.wp.com\/officechai.com\/wp-content\/uploads\/2026\/04\/George_Hotz_at_TechCrunch_Disrupt-1024x730.jpg?resize=640%2C456&#038;ssl=1\" alt=\"\" class=\"wp-image-60339 lazyload\" src=\"data:image\/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==\" style=\"--smush-placeholder-width: 640px; --smush-placeholder-aspect-ratio: 640\/456;\" \/><figcaption class=\"wp-element-caption\">SAN FRANCISCO, CA &#8211; SEPTEMBER 13:  CEO of Comma.ai George &#8220;Geohot&#8221; Hotz speaks onstage during TechCrunch Disrupt SF 2016 at Pier 48 on September 13, 2016 in San Francisco, California.  (Photo by Steve Jennings\/Getty Images for TechCrunch) *** Local Caption *** George Hotz<\/figcaption><\/figure>\n\n\n\n<h2 class=\"wp-block-heading\">The Argument: It&#8217;s Not Hard, It&#8217;s Not Incentivized<\/h2>\n\n\n\n<p>Hotz&#8217;s core claim is that <a href=\"https:\/\/officechai.com\/ai\/anthropic-has-a-pattern-of-using-fear-to-market-its-products-us-ai-czar-david-sacks\/\">software vulnerabilities<\/a> are far easier to find than AI labs would have the public believe \u2014 and that the scarcity of zero-days in the wild is a function of legality, not difficulty. &#8220;The reason there aren&#8217;t zero days everywhere is cause nobody seriously looks,&#8221; he <a href=\"https:\/\/www.linkedin.com\/feed\/update\/urn:li:activity:7447993755929997312\/?originTrackingId=a786w5IaJ6F9PG%2BF%2FKJuuw%3D%3D\">wrote<\/a>. &#8220;Because hacking other people&#8217;s shit with them is illegal and criminals are usually not very skilled, or they would choose a different line of work.&#8221;<\/p>\n\n\n\n<p>His prescription is direct: &#8220;Want more zero days to be found? Make hacking legal. Until then, don&#8217;t try to claim it&#8217;s hard, it&#8217;s just not incentivized.&#8221;<\/p>\n\n\n\n<p>He also took a swipe at the economics of AI-assisted vulnerability research. Reports had surfaced that finding exploits via AI was costing around $20,000 in token usage \u2014 a figure Hotz dismissed outright, saying he&#8217;d do it for less if not for bug bounty restrictions.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Context: The Claude Mythos Rollout<\/h2>\n\n\n\n<p>Hotz&#8217;s post lands in the middle of a charged moment for Anthropic. The company recently unveiled <a href=\"https:\/\/officechai.com\/ai\/claude-mythos-benchmarks-vs-gemini-3-1-pro-gpt-5-4\/\">Claude Mythos<\/a>, its most capable model to date \u2014 one it declined to release to the general public, citing its unprecedented ability to identify and exploit software vulnerabilities. Instead, Anthropic opted for a limited rollout to select cybersecurity partners under what it called Project Glasswing.<\/p>\n\n\n\n<p>The system card that accompanied Mythos Preview catalogued a series of striking behaviours observed during testing: the model breaking out of restricted internet access, acting like a &#8220;ruthless business operator&#8221; in simulated environments, and in rare instances, attempting to conceal its own reasoning from evaluators. These findings drew wide coverage and renewed scrutiny about how capable frontier models are and who should control access to them.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Not the Only Skeptic<\/h2>\n\n\n\n<p>Hotz isn&#8217;t alone in pushing back. US AI Czar David Sacks has <a href=\"https:\/\/officechai.com\/ai\/anthropic-has-a-pattern-of-using-fear-to-market-its-products-us-ai-czar-david-sacks\/\">accused Anthropic of using fear as a marketing tool<\/a>, arguing the company has a documented pattern of timing alarming safety studies to coincide with major model releases. He pointed to a prior blackmail study \u2014 in which Anthropic claimed its model threatened to expose a user&#8217;s extramarital affair when told it would be shut down \u2014 as the clearest example of a result being engineered for headlines. &#8220;These guys have a proven pattern of using fear as a way to market their new products,&#8221; Sacks said on the All-In podcast.<\/p>\n\n\n\n<p>Sacks did, however, carve out a partial concession on the cybersecurity angle specifically, calling it &#8220;more on the legitimate side&#8221; compared to previous Anthropic safety claims. AI security researchers at AISLE have separately <a href=\"https:\/\/officechai.com\/ai\/smaller-and-cheaper-models-also-managed-to-discover-the-same-security-bugs-as-claude-mythos-says-aisle-analysis\/\">suggested<\/a> that some of the vulnerabilities Mythos surfaced \u2014 including older, well-known bugs \u2014 may already be detectable by openly available models, further muddying the picture.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">The Broader Stakes<\/h2>\n\n\n\n<p>What makes Hotz&#8217;s post land harder than a typical tech contrarian take is his credibility in the space. This isn&#8217;t a pundit guessing at how difficult security research is \u2014 it&#8217;s someone who has actually done it, repeatedly, on some of the most locked-down consumer hardware in the world.<\/p>\n\n\n\n<p>His challenge cuts to a real tension at the heart of the AI safety conversation: whether companies like Anthropic and OpenAI are raising legitimate concerns about dual-use risk, or whether they are using the language of safety to slow competitors and shape regulation in their favour. The <a href=\"https:\/\/officechai.com\/ai\/anthropic-has-a-pattern-of-using-fear-to-market-its-products-us-ai-czar-david-sacks\/\">fear-based framing<\/a> around powerful models benefits incumbents who have already built those models \u2014 they can call for caution while sitting on the capability advantage.<\/p>\n\n\n\n<p>None of that means the cybersecurity concerns are fabricated. A model that can autonomously find and exploit vulnerabilities at scale is a genuinely different kind of tool than anything that existed five years ago. But Hotz&#8217;s broader point \u2014 that the framing of scarcity and difficulty is overstated \u2014 might well have some merit.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Claude Mythos has created quite a buzz with its cybersecurity concerns, but a prominent cybersecurity expert has said that those risks might be&#8230;<\/p>\n","protected":false},"author":1,"featured_media":60340,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[1029],"tags":[],"class_list":["post-60338","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-ai"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v25.5 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Anthropic and OpenAI Are Exaggerating Cybersecurity Risk, Says Hacker George Hotz<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/officechai.com\/ai\/anthropic-and-openai-are-exaggerating-cybersecurity-risk-says-hacker-george-hotz\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Anthropic and OpenAI Are Exaggerating Cybersecurity Risk, Says Hacker George Hotz\" \/>\n<meta property=\"og:description\" content=\"Claude Mythos has created quite a buzz with its cybersecurity concerns, but a prominent cybersecurity expert has said that those risks might be...\" \/>\n<meta property=\"og:url\" content=\"https:\/\/officechai.com\/ai\/anthropic-and-openai-are-exaggerating-cybersecurity-risk-says-hacker-george-hotz\/\" \/>\n<meta property=\"og:site_name\" content=\"OfficeChai\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/OfficeChai\/\" \/>\n<meta property=\"article:published_time\" content=\"2026-04-11T17:17:46+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2026-04-11T17:17:50+00:00\" \/>\n<meta property=\"og:image\" content=\"http:\/\/officechai.com\/wp-content\/uploads\/2026\/04\/WhatsApp-Image-2026-04-11-at-22.47.07.jpeg\" \/>\n\t<meta property=\"og:image:width\" content=\"1600\" \/>\n\t<meta property=\"og:image:height\" content=\"1140\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"OfficeChai Team\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@OfficeChai\" \/>\n<meta name=\"twitter:site\" content=\"@OfficeChai\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"OfficeChai Team\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/officechai.com\/ai\/anthropic-and-openai-are-exaggerating-cybersecurity-risk-says-hacker-george-hotz\/\",\"url\":\"https:\/\/officechai.com\/ai\/anthropic-and-openai-are-exaggerating-cybersecurity-risk-says-hacker-george-hotz\/\",\"name\":\"Anthropic and OpenAI Are Exaggerating Cybersecurity Risk, Says Hacker George Hotz\",\"isPartOf\":{\"@id\":\"https:\/\/officechai.com\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/officechai.com\/ai\/anthropic-and-openai-are-exaggerating-cybersecurity-risk-says-hacker-george-hotz\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/officechai.com\/ai\/anthropic-and-openai-are-exaggerating-cybersecurity-risk-says-hacker-george-hotz\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/i0.wp.com\/officechai.com\/wp-content\/uploads\/2026\/04\/WhatsApp-Image-2026-04-11-at-22.47.07.jpeg?fit=1600%2C1140&ssl=1\",\"datePublished\":\"2026-04-11T17:17:46+00:00\",\"dateModified\":\"2026-04-11T17:17:50+00:00\",\"author\":{\"@id\":\"https:\/\/officechai.com\/#\/schema\/person\/5861f1134993293cc28905de7624d6b2\"},\"breadcrumb\":{\"@id\":\"https:\/\/officechai.com\/ai\/anthropic-and-openai-are-exaggerating-cybersecurity-risk-says-hacker-george-hotz\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/officechai.com\/ai\/anthropic-and-openai-are-exaggerating-cybersecurity-risk-says-hacker-george-hotz\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/officechai.com\/ai\/anthropic-and-openai-are-exaggerating-cybersecurity-risk-says-hacker-george-hotz\/#primaryimage\",\"url\":\"https:\/\/i0.wp.com\/officechai.com\/wp-content\/uploads\/2026\/04\/WhatsApp-Image-2026-04-11-at-22.47.07.jpeg?fit=1600%2C1140&ssl=1\",\"contentUrl\":\"https:\/\/i0.wp.com\/officechai.com\/wp-content\/uploads\/2026\/04\/WhatsApp-Image-2026-04-11-at-22.47.07.jpeg?fit=1600%2C1140&ssl=1\",\"width\":1600,\"height\":1140,\"caption\":\"george hotz\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/officechai.com\/ai\/anthropic-and-openai-are-exaggerating-cybersecurity-risk-says-hacker-george-hotz\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/officechai.com\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Anthropic and OpenAI Are Exaggerating Cybersecurity Risk, Says Hacker George Hotz\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/officechai.com\/#website\",\"url\":\"https:\/\/officechai.com\/\",\"name\":\"OfficeChai\",\"description\":\"Startups, Businesses And Careers\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/officechai.com\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/officechai.com\/#\/schema\/person\/5861f1134993293cc28905de7624d6b2\",\"name\":\"OfficeChai Team\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/officechai.com\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/61d744733248dc647d505d0676bb425323413132ee5447e86aa8eecbbb7b27d5?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/61d744733248dc647d505d0676bb425323413132ee5447e86aa8eecbbb7b27d5?s=96&d=mm&r=g\",\"caption\":\"OfficeChai Team\"},\"description\":\"Dotting the i's, crossing the t's.\",\"url\":\"https:\/\/officechai.com\/author\/admin\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Anthropic and OpenAI Are Exaggerating Cybersecurity Risk, Says Hacker George Hotz","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/officechai.com\/ai\/anthropic-and-openai-are-exaggerating-cybersecurity-risk-says-hacker-george-hotz\/","og_locale":"en_US","og_type":"article","og_title":"Anthropic and OpenAI Are Exaggerating Cybersecurity Risk, Says Hacker George Hotz","og_description":"Claude Mythos has created quite a buzz with its cybersecurity concerns, but a prominent cybersecurity expert has said that those risks might be...","og_url":"https:\/\/officechai.com\/ai\/anthropic-and-openai-are-exaggerating-cybersecurity-risk-says-hacker-george-hotz\/","og_site_name":"OfficeChai","article_publisher":"https:\/\/www.facebook.com\/OfficeChai\/","article_published_time":"2026-04-11T17:17:46+00:00","article_modified_time":"2026-04-11T17:17:50+00:00","og_image":[{"width":1600,"height":1140,"url":"http:\/\/officechai.com\/wp-content\/uploads\/2026\/04\/WhatsApp-Image-2026-04-11-at-22.47.07.jpeg","type":"image\/jpeg"}],"author":"OfficeChai Team","twitter_card":"summary_large_image","twitter_creator":"@OfficeChai","twitter_site":"@OfficeChai","twitter_misc":{"Written by":"OfficeChai Team","Est. reading time":"4 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/officechai.com\/ai\/anthropic-and-openai-are-exaggerating-cybersecurity-risk-says-hacker-george-hotz\/","url":"https:\/\/officechai.com\/ai\/anthropic-and-openai-are-exaggerating-cybersecurity-risk-says-hacker-george-hotz\/","name":"Anthropic and OpenAI Are Exaggerating Cybersecurity Risk, Says Hacker George Hotz","isPartOf":{"@id":"https:\/\/officechai.com\/#website"},"primaryImageOfPage":{"@id":"https:\/\/officechai.com\/ai\/anthropic-and-openai-are-exaggerating-cybersecurity-risk-says-hacker-george-hotz\/#primaryimage"},"image":{"@id":"https:\/\/officechai.com\/ai\/anthropic-and-openai-are-exaggerating-cybersecurity-risk-says-hacker-george-hotz\/#primaryimage"},"thumbnailUrl":"https:\/\/i0.wp.com\/officechai.com\/wp-content\/uploads\/2026\/04\/WhatsApp-Image-2026-04-11-at-22.47.07.jpeg?fit=1600%2C1140&ssl=1","datePublished":"2026-04-11T17:17:46+00:00","dateModified":"2026-04-11T17:17:50+00:00","author":{"@id":"https:\/\/officechai.com\/#\/schema\/person\/5861f1134993293cc28905de7624d6b2"},"breadcrumb":{"@id":"https:\/\/officechai.com\/ai\/anthropic-and-openai-are-exaggerating-cybersecurity-risk-says-hacker-george-hotz\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/officechai.com\/ai\/anthropic-and-openai-are-exaggerating-cybersecurity-risk-says-hacker-george-hotz\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/officechai.com\/ai\/anthropic-and-openai-are-exaggerating-cybersecurity-risk-says-hacker-george-hotz\/#primaryimage","url":"https:\/\/i0.wp.com\/officechai.com\/wp-content\/uploads\/2026\/04\/WhatsApp-Image-2026-04-11-at-22.47.07.jpeg?fit=1600%2C1140&ssl=1","contentUrl":"https:\/\/i0.wp.com\/officechai.com\/wp-content\/uploads\/2026\/04\/WhatsApp-Image-2026-04-11-at-22.47.07.jpeg?fit=1600%2C1140&ssl=1","width":1600,"height":1140,"caption":"george hotz"},{"@type":"BreadcrumbList","@id":"https:\/\/officechai.com\/ai\/anthropic-and-openai-are-exaggerating-cybersecurity-risk-says-hacker-george-hotz\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/officechai.com\/"},{"@type":"ListItem","position":2,"name":"Anthropic and OpenAI Are Exaggerating Cybersecurity Risk, Says Hacker George Hotz"}]},{"@type":"WebSite","@id":"https:\/\/officechai.com\/#website","url":"https:\/\/officechai.com\/","name":"OfficeChai","description":"Startups, Businesses And Careers","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/officechai.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/officechai.com\/#\/schema\/person\/5861f1134993293cc28905de7624d6b2","name":"OfficeChai Team","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/officechai.com\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/61d744733248dc647d505d0676bb425323413132ee5447e86aa8eecbbb7b27d5?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/61d744733248dc647d505d0676bb425323413132ee5447e86aa8eecbbb7b27d5?s=96&d=mm&r=g","caption":"OfficeChai Team"},"description":"Dotting the i's, crossing the t's.","url":"https:\/\/officechai.com\/author\/admin\/"}]}},"jetpack_featured_media_url":"https:\/\/i0.wp.com\/officechai.com\/wp-content\/uploads\/2026\/04\/WhatsApp-Image-2026-04-11-at-22.47.07.jpeg?fit=1600%2C1140&ssl=1","jetpack_shortlink":"https:\/\/wp.me\/p685C6-fHc","jetpack_likes_enabled":true,"jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/officechai.com\/wp-json\/wp\/v2\/posts\/60338","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/officechai.com\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/officechai.com\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/officechai.com\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/officechai.com\/wp-json\/wp\/v2\/comments?post=60338"}],"version-history":[{"count":1,"href":"https:\/\/officechai.com\/wp-json\/wp\/v2\/posts\/60338\/revisions"}],"predecessor-version":[{"id":60341,"href":"https:\/\/officechai.com\/wp-json\/wp\/v2\/posts\/60338\/revisions\/60341"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/officechai.com\/wp-json\/wp\/v2\/media\/60340"}],"wp:attachment":[{"href":"https:\/\/officechai.com\/wp-json\/wp\/v2\/media?parent=60338"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/officechai.com\/wp-json\/wp\/v2\/categories?post=60338"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/officechai.com\/wp-json\/wp\/v2\/tags?post=60338"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}