惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

L
LangChain Blog
Recent Announcements
Recent Announcements
GbyAI
GbyAI
H
Hackread – Cybersecurity News, Data Breaches, AI and More
Microsoft Azure Blog
Microsoft Azure Blog
N
Netflix TechBlog - Medium
人人都是产品经理
人人都是产品经理
MongoDB | Blog
MongoDB | Blog
D
DataBreaches.Net
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
WordPress大学
WordPress大学
U
Unit 42
腾讯CDC
D
Docker
The GitHub Blog
The GitHub Blog
阮一峰的网络日志
阮一峰的网络日志
Vercel News
Vercel News
I
InfoQ
Jina AI
Jina AI
爱范儿
爱范儿
宝玉的分享
宝玉的分享
博客园 - Franky
G
Google Developers Blog
P
Proofpoint News Feed

www.infosecurity-magazine.com

Just Three Ransomware Gangs Accounted for 40% of Attacks Last Month Google Chrome Rolls Out Protection Against Infostealers Targeting Session Cookies STX RAT Targets Finance Sector With Advanced Stealth Tactics Bitcoin Depot Reports $3.6m Crypto Theft After System Breach Atomic Stealer MacOS ClickFix Attack Bypasses Apple Security Warnings Middle East Hack-for-Hire Operation Traced to South Asian Cyber Espionage Group Governance Gaps Emerge as AI Agents Drive 76% Increase in NHIs Google Warns of New Threat Group Targeting BPOs and Helpdesks Google API Keys Quietly Gain Access to Gemini on Android Devices Critical Vulnerability in Ninja Forms Exposes WordPress Sites Anthropic Launches Project Glasswing to Use AI to Find and Fix Critical Software Vulnerabilities US Thwarts DNS Hijacking Network Controlled by Russian APT28 Hackers Claude Discovers Apache ActiveMQ Bug Hidden for 13 Years Iran‑Backed Threat Actors Hit US CNI Providers via Internet‑Facing OT Assets Russian APT28 Hackers Hijack Routers to Steal Credentials, UK Security Agency Warns GPU Rowhammer Attack Enables Privilege Escalation and Full System Compromise GrafanaGhost Exploit Bypasses AI Guardrails for Silent Data Exfiltration Over $17bn Lost to Cyber Fraud in the Last Year, Warns FBI Storm-1175 Exploits Flaws in High-Velocity Medusa Attacks Fortinet Releases Emergency Patch After FortiClient EMS Bug Is Exploited New Phishing Platform Used in Credential Theft Campaigns Against C-Suite Execs New 'Storm' Infostealer Remotely Decrypts Stolen Credentials NCSC Issues Security Alert Over Hackers Targeting WhatsApp and Signal Accounts Apple Expands iOS 18 Security Updates Amid DarkSword Threat Researchers Observe Sub-One-Hour Ransomware Attacks GitHub Used as Covert Channel in Multi-Stage Malware Campaign Most CNI Firms Face Up to £5m in Downtime from OT Attacks Google Introduces Android Dev Verification Amid Openness Debate New Venom Stealer MaaS Platform Automates Continuous Data Theft Chinese Hackers Target European Governments in Espionage Campaigns
Trump Signs Order Inviting Voluntary Review of Frontier A...
Alessandro Mascellino · 2026-06-03 · via www.infosecurity-magazine.com

Developers of the most powerful AI models have been invited, but not required, to hand their models to the US government for cybersecurity review before release, under an executive order signed on June 2.

The order, signed by President Donald Trump, sets up a voluntary framework. It directs agencies to design a process through which developers could give the government access to a "covered frontier model" for up to 30 days before releasing it to other trusted partners. A separate clause expressly rules out any mandatory licensing or preclearance requirement for new models.

The move marks a shift for an administration that has favored a light touch on AI, and follows a May near-miss when Trump pulled an earlier draft, citing concerns that included its longer review window.

The Threat Driving the Order

Although the text does not name it, the order lands amid mounting concern over frontier models that can find and exploit software flaws at scale, chief among them Anthropic's Claude Mythos Preview.

Anthropic has recently warned that rival labs could field comparable models within a year, possibly without safeguards against misuse.

The NSA, the Cybersecurity and Infrastructure Security Agency (CISA) and NIST, the order said, must build a classified benchmark to decide which models cross the "covered" threshold.

Read more on frontier cyber models: What Frontier AI Models Like Mythos & GPT-Cyber Mean for Cybersecurity.

The framework closely echoes Anthropic's Project Glasswing, which gives vetted partners early access to Mythos to scan critical software for vulnerabilities.

A Wider Federal Cyber Push

Beyond the review framework, the bulk of the order is a defensive overhaul. It gives agencies 30 days to harden national security, military and civilian federal systems and directs CISA to issue binding directives that expand AI-enabled defensive tools and widen access for smaller operators such as rural hospitals and local utilities.

It also creates an "AI cybersecurity clearinghouse," led by the Treasury Department, to coordinate vulnerability scanning, validation and patching.

Industry reaction was broadly supportive but wary of whether a voluntary scheme can be truly effective. "Voluntary security programs can work, but only when they create real accountability," said Diana Kelley, CISO at Noma Security, noting that coordinated disclosure matured once intake channels, timelines and safe-harbor terms were added.

Rajeev Gupta, co-founder of Cowbell, was blunter. "The government simply isn't equipped to meaningfully oversee frontier AI models on its own," he said. As an alternative, he floated a public-private body funded by the labs but backed by regulatory authority.

For now, the framework's force will rest on whether Congress later ties pre-release review to procurement or export rules.