YYaaa News

IBM bets $5B on open-source security — and openly admits Mythos was the trigger

TL;DR

IBM and Red Hat announce Project Lightwell — a $5B, 20,000-engineer open-source security clearinghouse. CEO Arvind Krishna says explicitly: Anthropic's Mythos was the trigger.

May 28: IBM and Red Hat announce Project Lightwell$5B, 20,000 engineers, building an open-source software security clearinghouse: enterprises submit vulnerabilities, AI verifies the patches, results sync back to the community. Subscription model, going live within 30 days. Bank of America, JPMorgan, Visa already in pilot.

IBM CEO Arvind Krishna said the honest thing: «Mythos was the key trigger for this investment.» Translation: Anthropic's AI can scan open source at scale and find vulnerabilities. IBM itself is one of open source's largest contributors. Sitting still equals handing customer infrastructure to attackers.

Timing isn't coincidence. The CIFSwitch vulnerability just proved AI semantic graph analysis can find kernel flaws hidden for 18 years — traditional manual audit can't keep up. Both attackers and defenders use the same tools. Defenders without a systematic response will fall further behind.

via IBM
IBM 砸 50 億做開源安全|直接說是被 Anthropic Mythos 嚇到了