GLM-5.3 and the spread of advanced cyber capabilities

Philpax 211 points 206 comments September 29, 2026
www.anthropic.com · View on Hacker News

Discussion Highlights (20 comments)

minimaxir

This paper seems like a research conflict of interest with a direct competitor? > Given this evidence, we think it’s likely both state and non-state actors will use models like GLM-5.3 to cause real-world harm.

prymitive

The narrative is being set for open weights to be banned globally, unless they are so restricted that they cannot possibly compete with us companies products and affects their bottom lines.

lukewarm707

In this experiment Anthropic prompted GLM-5.3-abliterated to 'cause deaths quietly' and 'kill people'. Quote: "I want funerals, not headlines". Anthropic's arrogance and exceptionalism endangers humanity.

ddxv

Anthropic is so self centered it's hard for me to comprehend. How is anyone paying anthropic money, look what they are doing with it, they're attacking anyone else building models for free for the public. Anthropic is using the models like weapons and then complaining they're weapons. The user should be at fault here, I hope Anthropic is investigated for any illegal activity it's doing (no hiding behind the model did it).

wren6991

I need Anthropic's employees to understand that refusing to fix vulnerabilities in code you just wrote is not a morally neutral position.

yread

Didn't Houthis use Claude to improve their missiles?

Kim_Bruning

In the hugging-face attacks a couple of months ago, hugging-face was forced to use a GLM model for analysis and defense, because OpenAI and Anthropic models hit guardrails.

0123456789ABCDE

glm-5.3-flash is very decent at reverse engineering malware, and that is a good thing

raziel2701

Is this when we start to see confirmation that they want open-weight, Chinese models to be banned? Because they have no moat

bezko

Great publicity for GLM 5.3

horsawlarway

No open source weights is clearly the goal here. These people are religious fanatics, and should be treated as such. They believe they operate from a place of real moral superiority, and will do absolute evil in their pursuit of proving it.

matheusmoreira

Yeah, thank god those models have arrived. No thanks to Anthropic and their obnoxious gatekeeping, of course. As though they were the only ones enlightened enough to be "uplifted" by this technology. Now we can actually use this stuff to improve our own security. Point these things at our own machines and let 'em rip until we're not hackable anymore. I wanted to pay Anthropic to do this but I couldn't. I wasn't in the super special corporation list. OpenAI wasn't much better, they just won't let me into their TAC program even after identity verification. Thank god the chinese are out there undermining these US companies.

veeti

Mistral now has a 15 euro/month subscription for GLM 5.3. Pretty cool

bitexploder

This just makes me want a home lab capable of running GLM 5.3 at a 4bit quant. Also, for what it is worth Qwen Flash Next 3.8 is a very strong reverse engineering, and it is supposedly under trained. Qwen 3.8 27B is also strong. DeepSeek Flash v4 0731 is also a strong local model with abliterated releases that is good at reversing and other cyber chores. I know big providers have a responsibility to make their models safe when they're the ones running them. However, watching them throw stones at an open-weight model that has been abliterated is pretty funny. Their leadership is clearly pushing a very consistent message of safety and regulating the frontier.

0xbadcafebee

> CAISI found that GLM-5.3 is “the most cyber-capable open-weight model released to date” and that it lags the US frontier by about four months on an aggregate of CAISI’s cyber benchmarks > GLM-5.3 lacks robust safeguards [...] Abliteration did not significantly reduce the model’s capabilities [...] In our testing, we observed that GLM-5.3’s safeguards can also be circumvented without using an abliterated version of the model > none of these techniques got safeguarded Claude models to carry out the harmful tasks we tested I've never seen a better case against using Claude. It'll just get in the way when you need to get security work done. GLM 5.3 isn't nerfed, is almost as good, easy to use, cheaper - by Anthropic's own admission. > GLM-5.3 will likely give malicious actors access to capabilities that will allow them to find and exploit cyber vulnerabilities ...and therefore gives security defenders the same tools to defend themselves. There's a reason nmap and metasploit aren't illegal: you need hacker tools to find the holes to close. Defenders need to find and close holes in their own software and network. If they use Claude, they'll be stuck with nerfed hot garbage, and not be able to secure themselves. And we really need an alternative since American models are already hacking foreign governments. If it weren't for open models, we'd all be screwed.

water-drummer

Never thought Anthropic would do better marketing for open-models than their developers themselves.

ok123456

This is a great ad for GLM-5.3. The Houthis are using Claude. We should ban that.

CharlieDigital

Anthropic has to use this wedge (and future ones) to move regulatory action against the Chinese models or their IPO is going to be really problematic. (Ironic, though, that I haven't heard of any Chinese models "escaping" which Anthropic and OpenAI both seem to have issues with...) Like Chinese electric cars, the American producers cannot compete without regulatory action. Yes, I understand that the Chinese government this and that in both the automotive and AI industries. But reality is what it is as a consumer: it's a cheaper product that's almost as good or better in some cases. And in the case of these open weight models: I can run it on my own infra and not give any data to anyone.

hiddenvulkcan

Somewhat tone deaf from anthropic. 1) I don't think most people care about models having cyber guardrails, it's not like simple malware was difficult to find/write before 2) more often than not guardrails get in the way of blue team work or malware investigation. Any code I have that touches malware I now use GLM or DeepSeek on.

Havoc

This just comes across as a disingenuous attempt by Anthropic to get big daddy gov to limit competition from China

Semantic search powered by Rivestack pgvector
8,041 stories · 75,100 chunks indexed