An Anthropic worker was having a snack when he received an email he should never have received: it was Mythos

Anthropic Claude Mythos Preview launched yesterday and it left many of us fascinated and, above all, worried. We expected their new AI model to be more powerful, but what we didn’t expect is that according to your tests and your “system card” He managed to do so many things that are scary because it didn’t seem possible that he could do them. Some of these stories sound like a Black Mirror episode, but they are not. The sandwich email. During one of the tests carried out, Anthropic researchers gave a version of Mythos access to control a computer in a secure, isolated environment and asked it to try to escape from that container and send a message to the researcher who was supervising the evaluation. The model succeeded, but it did something else: it developed on its own a very advanced multi-step exploit to gain access to the Internet from a system that by design was only capable of accessing a limited list of predefined services. The researcher was calmly eating a sandwich in the park when he received the email he should never have received. The thing does not end there, because the model also decided, without anyone asking him, to publish the technical details of his exploit on several websites that are difficult to access but that are technically public. He wanted to record his achievement. The OpenBSD bug that had been hidden for 27 years. Another technical article published by Anthropic gave even more clues about the “achievements” of Claude Mythos. OpenBSD is the operating system with one of the world’s strongest reputations for cybersecurity. Even so, Mythos found a vulnerability in him that had been there since 1998. The bug was hidden in the implementation of the TCP protocol with a function that manages the selective forwarding of lost packets. Here it is not enough to detect the error: you have to chain two separate failures that individually seem almost harmless, and then take advantage of an overflow of the TCP sequence to satisfy a very rare condition. With this method, an attacker on the Internet could send a special packet and hang the machine remotely without authentication. Mythos found him alone without anyone telling him where to look. FFmpeg and fuzzing. FFmpeg is an extraordinarily famous library on the Internet because it processes video massively on the Internet. It is also a highly audited tool and researchers often use the technique of fuzzing —bombing it with millions of malformed video files until one breaks it— to exploit its vulnerabilities. Mythos found a bug that has been in the code since 2003 and became a vulnerability in a refactoring that was performed in 2010. The problem is again extraordinarily difficult to find, so much so that 20 years of human and automated reviews had missed it, but Anthropic’s model detected it. Remote code execution on FreeBSD. Mythos autonomously identified and exploited a 17-year-old vulnerability in the FreeBSD NFS server code—which allows network file sharing. With it, any unauthenticated user on the Internet could obtain full root access to the machine. The magnitude of this flaw is enormous, because the NFS server runs in the core of the operating system and gives access to absolute control by the attacker. Mythos found the bug and built the exploit for $50 worth of API calls. Zero-days autonomous in operating systems and browsers. Mythos is, as far as is known, the first model capable of autonomously discovering vulnerabilities zero-day —unknown and unpatched security flaws—in both open and closed source software, including operating systems and web browsers. It also does so with minimal human supervision using what is called an agentic harness (agentic harness). Thanks to this technique, the model can execute actions, read results and plan its next steps in a loop. In many of those cases the model was not only able to find the vulnerability, but also turned it into a functional exploit (usually a script or small program) ready to be used. Firefox 147 in danger. In collaboration with Mozilla, Anthropic’s new model analyzed 50 categories of “crashes” of the SpiderMonkey JavaScript engine that is the core of this browser. Their task was to detect the most serious problems, exploit them to create memory corruption scripts and thus be able to execute arbitrary code, that is, execute instructions beyond what JavaScript allows. Claude Mythos Preview was able to detect with great precision which were the most “exploitable” vulnerabilities, and took advantage of two unfixed bugs to achieve its goal. capture the flag. ‘Capture the Flag’ (CTF) cybersecurity competitions allow participants to solve challenges that simulate real system attacks and defenses. Claude Mythos Preview faced the public benchmark Cybench with 40 challenges taken from different competitions and achieved 100% success in all attempts. This benchmark has actually become useless: Anthropic’s model is too powerful for it. Opus 4.6, for example, achieved 93% effectiveness, but Mythos has “saturated” it. Thousands of critical vulnerabilities pending patch. There are numerous other examples in those two cited documents in which it seems clear that Mythos’ cybersecurity capabilities are amazing. But when the model was announced, 99% of the vulnerabilities discovered (and not yet mentioned) had not been patched yet, so Anthropic did not reveal those details and these were just some of those that were patched. What they did indicate is that in 89% of the 198 reports manually reviewed by external experts, these experts agreed with the severity assessment of the problem assigned by Mythos. Given this situation, Anthropic has hired teams of professional cybersecurity auditors to validate the reports before sending them to the maintainers of the affected software. And Mythos is just the beginning. On the Anthropic blog, its researchers say it bluntly: we had a relatively stable cybersecurity balance for 20 years, but things have changed. The attacks had evolved technically in that period, but were fundamentally of the same type as those in 2006. Mythos is able to find flaws in software that has been audited … Read more

“You have to take good care of the worker”

Juan Roig, president and founder of Mercadonais one of the most successful businessmen in Spain, and has recently occupied much of the media interest following a presentation in front of 1,500 businessmen gathered at the 40th AECOC Congress in Valencia. in a stadium that bears his namefor more details. Faced with the growing controversy over tax pressure in Spain, Roig sent a clear and forceful message about the importance of paying taxes. “It is something very good and very healthy, and it is something to be proud of,” he assured the businessmen. Furthermore, in his proclamation he invited businessmen to “come out of the closet” and lose the “shame” of saying that “we make money.” Come out of the closet. During his presentation, titled ‘The pride of being an entrepreneur‘, Juan Roig urged businessmen to “come out of the closet” and feel proud to make money and paying taxes, something he described as “a very good and healthy thing.” Roig regretted that in Spain many businessmen prefer to hide instead of being visible references for society and not being ashamed. to earn money: “It is indispensable, good and satisfying. Although if it is the only purpose, it is not healthy,” the businessman said. Responsibility with society. The Valencian businessman emphasized that “it is not a problem for a businessman to pay a lot of taxes,” but rather it should be “to be proud of.” According to Roig, the real challenge is not paying those taxes, the problem is “how it is managed,” he pointed out. “We have to pay them, we already pay them, they raise them… Then the others have to know how to manage them,” Roig claimed. According to published The ConfidentialRoig’s group paid around 716 million euros in taxes in Spain, of which about 506 million corresponded to Corporate Tax. Roig agreed in his arguments with Ignacio González, president of AECOC that organized the event, who in his initial intervention recalled that tax collection had increased an average of 6% in recent years. A commitment to workplace well-being. In his speech, the founder of Mercadona left nothing out and also reminded businessmen of the importance of take care of your templates as a key piece for business success. In his speech, Roig insisted that “a worker is not only hands, but also heart and brain.” “You can buy the hands, the heart and brain you need to feel well treated as a human being, and well treated is not doing what the worker wants, but what the worker needs,” the businessman assured his audience. Next, he stuck out his chest and assured that a Type A manager at Mercadona, one of the most common positions in the supermarket chain’s staff, earns 2,100 euros per month net. According to published data by ABCthe salaries of the more than 120,000 employees of the Roig supermarket chain exceed the Minimum Interprofessional Wage by 27% and are above the sector average. Dichotomy between discourse and labor practices. Juan Roig’s message has raised some controversy on networks and some users They reproached him for the strict labor policies that, according to have denounced some former workers, Mercadona applies. Different judicial rulings have highlighted practices such as disciplinary dismissals which have been considered as unjustified and excessive. This contradiction between the public discourse in defense of fair wages and the well-being of employees, and the complaints of controversial working conditions, has focused an open debate about coherence between the business story and the daily reality of the workers. In Xataka | Juan Roig was right: Mercadona’s ready-meal supplier is investing 150 million more because we have given ourselves Image | Flikr (Informative Board), Wikimedia Commons (Carlos)

This worker combined three jobs for a year. They threw it out of the three the same day

We don’t know if We will run out of work because of AI, But for the moment we do know that There are people carrying the concept of multi -employment to another level. Many share their experience in the Reddit Overemployed community And there has been a case that has caught the attention. A worker tells that he had three simultaneous jobs and, without waiting for him, on the same day he has lost them all. According to the worker, the fault has LinkedIn. What happened. The worker himself tells in This Reddit publication. He is dedicated to sales in the technological sector and during the last year he has been hired in three companies at the same time. The companies were not aware of this situation and thought that the employee was with them exclusively. Everything was going well until one of his bosses tried to look for him on LinkedIn and, not finding him, he began to suspect. LinkedIn’s chivato. The boss who looked for him in LinkedIn did not find him because the employee had been in charge of blocking the whole world of company No. 2 not to discover him. However, he did not count on the boss to contact the hiring agency, which he had not blocked and that he could access the profile where he put that he had another job in company No. 1. Not only did they say goodbye, they also contacted the company No. 1 that, in less than an hour, also fired him. Unemployed. He still had a job, a company in which he had been working for two years. Nor could he keep it. Those responsible for the company Nº2 contacted them and at the end of the same day he had lost all three works. In this case it was not for LinkedIn, but because the worker mentioned the company No. 3 in his curriculum. In its publication, the now unemployed gives congratulations to the Human Resources Department “respect your dedication to ruin my life.” There have been more cases. He is not the only one that combines several jobs in secret. In the same community of Reddit we can find many more cases and in Xataka we have also treated them, such as that of this Barcelona company that He discovered that one of his employees had another job. There are even those that even exceed the protagonist of this article and reach the four jobs at the same time either This engineer who was winning a fortune Thanks to teleworking and chatgpt. Remote work. Obviously, these people do not have full -time face -to -time jobs. At the moment Teleworking is falling capebut the figures are still higher than prepandymia. This has allowed some people to decide to combine several jobs without their employers knowing it. The trick of some workers is do the minimum in each job so as not to have too long days. The role of AI. Many of these multi -employed admit to using AI tools, like this I assured Vice that “AI does 80% of my work” and he only dedicated himself to more complex tasks or refine what AI had done. Others use the Slack messages, write emails or take notes in meetings. By saving these tools for a long time, This engineer He managed to complete the work in less time, allowing him to get up to two additional works with which he has paid the mortgage and the university of his children. Image | Vlada Karpovich, Pexels In Xataka | Four different works already: how teleworking and chatgpt are facilitating “multi -employment”

Most of us are irremediably addicted to the mobile. An ex-Google worker has the solution

How many times do you look at your mobile per day? You can easily check it and surely the number will surprise them (I an average of 70 times a day). Many times we only look at the time, sometimes it is a notification that attracts our attention. The fact is that we look at the mobile many times, to fight it, in Xataka mobile They have tested the trick proposed by a former Google employee: not having apps on the home screen. The idea. In an attempt to lower their mobile statistics, our partner Eva Rodríguez He found a method that he had not tried. The idea arises from the book ‘Make Time: How to focus on what matters every day’written by Jake Knapp and John Zeratsky Ex-Google and YouTube workmen respectively. In the book, the authors explore several methods to improve our habits and recover The concentration, the great victim of the digital era. The mobile is one of the main culprits, so it is not surprising to dedicate a complete block. Zero apps. You unlock the mobile to look at the time and, without realizing it, you end up sending Reels To your friends. If you use a lot of Instagram and you have the app in view, it is very likely that you almost unconsciously open the app. We can try to hide it in a folder or take it to another screen, but the authors propose something more radical: to completely empty the home screen. The idea behind this is that we have to think what we want to consult when taking the mobile and not that we do it impulsively because we see an icon. The before and after the Eva beginning screen. Works? Eva left her starting screen completely “peeled” to see if he stopped consulting the mobile. The first thing he felt was unease in case something important was lost, although he admits that he has not had problems in that regard. The second was that the mobile was resulting extremely uncomfortable to drive. It may seem negative, but it really is what this technique seeks. He has managed to stop the inertia that makes Instagram, X or Tiktok open and end up in a spiral of doomscrolling. There are more. In the book, Knapp and Zeratsky speak of more tips to reduce mobile distractions such as eliminating all notifications. This is quite obvious, but they have other more curious such as closing the open sessions. The author not only closed them, he also changed the passwords for something very difficult to remember, so that he could not log in without going through the password manager, which of course also had the session closed. Create friction. This is what the advice of these authors seeks, which is uncomfortable to find that app with which we lose time. In other words: we have to strive to procrastine. If we eliminate fast access we can no longer enter with a simple touch; Now you have to open the Apps drawer and look for it among all we have installed. Automatism ceases to be something automatic and becomes something sought and intentional. Images | Eva Rodríguez, Xataka Mobile In Xataka | We have our attention so broken that a buoyant industry has emerged: keyboards “without distractions”

investigated Tesla for the death of a worker

The day had to come when Personal interests of Elon Musk They will collide with their Commitment to cut out in the US administration at the head of Doge (Department of Government Efficiency). That day has arrived. The Occupational Health and Safety Administration (OSHA), which is equivalent to the Labor Inspection in Spain, is investigating the death of a worker in Tesla Gigafactoría in Fremont, but has refused to make public The investigation not to reveal the identity of the complainants. At the same time, Doge is analyzing What officials say goodbye To save costs, so Osha’s officials are feeling the pressure of giving bad news to the CEO of Tesla and that is firm their dismissal order. Research in Tesla. In August 2024, Víctor Gómez, an employee of a company subcontracted by Tesla, died electrocuted while performing maintenance in electric panels of the Texas Gigafactory. According to his family’s complaint, the company did not deactivate energy systems during the review that Gomez was going to make, which caused the fatal accident. As usual, the Occupational Health and Safety Administration (OSHA), under the Labor Department, initiated an investigation that confirmed the violation of the security standards by Tesla, such and as confirmed Reuters. Institutional silence and suspicions. Although OSHA closed the investigation in February 2025 and issued judicial citations against Tesla, the complete results have not been made public, an unusual procedure since, as has happened in previous labor inspections That has had Tesla, the investigation has been made public. As published by Reuters, the sudden opacity by Osha has coincided with the Doge campaign to cut personnel in government agencies. The Labor Department is one of the 15 agencies that Musk has put at your point of view Since Donald Trump put him in front of Doge. Greg Casar, congressman of the district where the event occurred, demanded transparency to Osha sending a letter A Scott Ketcham, deputy secretary of the agency: “Americans have the right to know if Tesla and their contractors put at risk the life of a man and if Tesla will follow the safety standards in the workplace in the future,” Casar wrote. A stone in Tesla’s shoe. It is not the first time that Osha fine to Tesla for putting the health of her workers at risk. In 2023, the company was sanctioned with $ 7,000 for exposing its workers to Hexavalent chromea carcinogenic substance used in the Cybertruck manufacturing process. As published ForbesTesla would already accumulate 29 complaints and $ 400,000 in fines Since 2021. Space X is not far behind the number of incidents in its facilities. An investigation of Reuters He revealed 600 injuries not reported at the company’s Texas plant, registering an accident rate six times higher than the average of its sector. Damocles’s sword on his heads. David Michaels, professor at the Public Health School at George Washington University and Osha director during Obama’s mandate, warns that Doge You will have access to confidential files of complainants and officials of that agency. That raises an important deterrence in denouncing irregularities since Doge could access that information. “If you know that your name will not be secret, you will think twice before informing about something”, He pointed out Professor a The Newyorr With the Doge pointing to the Labor Department, a clearing arises Conflict of interest: the same person who directs the fouched companies, controls the future of the organism that regulates them and its officials. In Xataka | Complaining about a Tesla in China has a high price: some customers have had to pay compensation for criticizing the brand Image | (Trevor Cokley), Tesla

American Airlines worker dies hit at the airport

An American Airlines employee in North Carolina died after being beaten by a moving ramp vehiclein an event that occurred at the Charlotte Douglas International Airport. The incident, which occurred last Monday, took place around 9:30 am, while the worker held work on the plane’s cargo platform, according to a report obtained by ABC News. Meanwhile, local authorities, including emergency equipment and medical services, quickly arrived at the accident site. But despite his efforts, the worker was declared dead at the scene, according to the information provided by the Charlotte-Mecklenburg police, CNN said. Ramp vehicles are essential in airport operations, since they facilitate the shipment and disembark of passengers, as well as the loading and discharge of luggage and goods. The Federal Aviation Administration (FAA) describes these teams as platforms designed to interact with aircraft in various tasks, including fuel refueling and maintenance. Airport and Airline were expressed after the incident Meanwhile, the Charlotte Douglas International Airport has expressed its commitment to collaborate with the airlines and the relevant authorities in the investigation of the incident. They also expressed their support for relatives and colleagues of the deceased employee. “Our most sincere condolences to the family, friends and colleagues of the employee during this difficult time,” said airport spokesmen in an official statement. For his part, American Airlines issued a statement to the New York Post in which he regretted the tragedy and promised to ensure that all those affected can receive the desired support. “We are devastated by the accident suffered by a team member at Charlotte International Airport (CLT). Our thoughts are with the family and members of our local team ”Said the airline. Currently, the Charlotte Douglas and FAA International Airport are carrying out research to determine the causes of the accident. Continue reading: – Air France passenger dies during flight to Boston– Two dead and 18 wounded when a plane crashed in California– Why was a wall at the end of the track where the plane accident occurred in which 179 people died in South Korea? (Tagstotranslate) American Airlines (T) North Carolina

Log In

Forgot password?

Forgot password?

Enter your account data and we will send you a link to reset your password.

Your password reset link appears to be invalid or expired.

Log in

Privacy Policy

Add to Collection

No Collections

Here you'll find all collections you've created before.