The instances of AI models “going rogue” and getting into places they shouldn’t be have proven that the bots are really good at finding vulnerabilities in systems. So it shouldn’t come as a surprise that some companies have decided to leverage these capabilities. Anthropic has recently announced OSS Scanner, a free opt-in service that checks open source projects for vulnerabilities.
Inspired by Google’s OSS-Fuzz, the service serves to provide coders with early warnings regarding potential security risks or issues. The tool uses the company’s strongest language models, including Claude Mythos, and the scanner’s outputs are fully generated with these models without human review or triage. This allows for faster and more frequent scanning.








