- AI Model Capability: Claude Mythos 5 discovered thousands of critical flaws, including a 27-year-old vulnerability in OpenBSD.
- Government Endorsement: Payward is among select U.S. organizations authorized to use Mythos 5 for critical infrastructure defense.
- Security Track Record: Kraken exchange has operated since 2011 without losing customer funds to a breach.
Experts would likely conclude that Payward's adoption of frontier AI represents a pivotal shift in cybersecurity, offering a scalable solution to counter the asymmetry between attackers and defenders in protecting critical financial infrastructure.
Payward Deploys Frontier AI to Fortify Crypto's Financial Fortress
CHEYENNE, Wyo. – August 17, 2026 – Payward, Inc., the financial infrastructure firm behind the Kraken cryptocurrency exchange, is deploying one of the world's most advanced artificial intelligence models to hunt for security flaws in its own code. The company announced today it has joined Project Glasswing, an elite initiative by AI safety leader Anthropic designed to secure the world’s most critical software.
This move grants Payward’s security division early access to Claude Mythos 5, a frontier AI model with a demonstrated, and at times unnerving, ability to discover software vulnerabilities that have eluded human experts for years. By integrating this AI into its defensive operations, Payward is sending a clear signal: the battle to secure the digital economy has entered a new, machine-scaled era. This isn't just an upgrade to a security stack; it's a fundamental shift in how critical financial infrastructure is protected.
Flipping the Cybersecurity Asymmetry
For decades, the world of cybersecurity has operated on a stark imbalance. Defenders must secure a vast and ever-expanding digital surface, searching for every potential flaw. Attackers, by contrast, need only find one.
“Security has always been an unfair game. An attacker needs to find one flaw. A defender has to find all of them, first, every single day,” said Arjun Sethi, Co-CEO of Payward, in a statement. “Frontier AI is the first thing that flips that asymmetry.”
Sethi’s assertion points to the disruptive power of models like Mythos 5. During its development, Anthropic observed that as its AI models became more generally capable, they spontaneously developed a superhuman talent for identifying and even exploiting security weaknesses. In early tests, Mythos 5 surfaced thousands of critical flaws, including one in the OpenBSD operating system that had gone undetected for 27 years. It is this potent, dual-use capability that Project Glasswing seeks to harness for good.
Payward will now use Mythos 5 to scan its entire digital environment, from its core infrastructure to its product surfaces. The AI can “read every line of code the way an attacker would, at machine scale,” Sethi explained. This allows the company’s defense teams to find a flaw “before anyone can build the exploit.” It transforms vulnerability discovery from a painstaking, human-led process into a continuous, automated hunt, giving defenders the ability to match, and even outpace, the relentless pace of would-be attackers.
A New Mandate for Critical Infrastructure
Payward's participation in Project Glasswing is not merely a private-sector decision; it unfolds against a backdrop of increasing government scrutiny over the power of frontier AI. In June, the U.S. government briefly suspended access to Mythos 5, citing national security concerns after its sibling model, Fable 5, was reportedly “jailbroken.”
However, the administration soon reversed course for a select few, authorizing Anthropic to provide Mythos 5 access to a vetted group of U.S. organizations responsible for operating and defending critical infrastructure. Payward’s inclusion in this track places it alongside technology and finance giants like Amazon Web Services, Google, Apple, and JPMorganChase, all of whom are launch partners in the initiative. This selection serves as a tacit endorsement of Payward's systemic importance to the digital financial ecosystem.
This government-sanctioned collaboration underscores a growing consensus that the immense power of frontier AI necessitates a proactive, defensive posture. By putting these tools in the hands of defenders first, initiatives like Project Glasswing aim to stay ahead of malicious actors who will inevitably seek to weaponize the same technology. For Payward, which operates an always-on global financial platform serving millions, this capability isn’t a luxury—it’s a strategic imperative.
Bolstering a Battle-Tested Defense
While the adoption of Mythos 5 marks a significant leap forward, it is an evolution, not a revolution, for Payward’s security posture. The company, whose Kraken exchange has famously operated since 2011 without losing customer funds to a breach, has long cultivated a culture of deep security investment. This is not a company scrambling to plug holes; it is one reinforcing an already formidable wall.
Payward’s existing security program is a multi-layered fortress. The company holds internationally recognized ISO 27001 and SOC 2 certifications, attesting to its rigorous security management controls. It runs a long-standing bug bounty program, paying independent researchers to find and report vulnerabilities. Internally, dedicated red and blue teams are locked in a constant adversarial dance—the red team mimicking real-world attackers to probe for weaknesses, and the blue team detecting, containing, and hardening defenses against them.
Mythos 5 will not replace this human expertise but augment it. Any vulnerabilities surfaced by the AI will be fed directly into the existing triage and remediation pipeline, where they will be verified, prioritized, and fixed alongside findings from the bug bounty program and internal teams. This integration demonstrates a mature approach to technology adoption, leveraging AI as a powerful force multiplier for its established human-led security operations.
Hardening the Entire Ecosystem
Perhaps the most significant growth signal in Payward's announcement is its commitment to the broader digital asset community. The crypto and open-source software worlds are deeply intertwined, with countless projects building upon shared codebases. A vulnerability in a single, widely used open-source library can create a ripple effect of risk across the entire industry.
Recognizing this, Payward has pledged to report any vulnerabilities Mythos 5 discovers in third-party open-source software back to the respective project maintainers. This will be handled under standard responsible disclosure practices, ensuring fixes are developed and deployed before the flaw is made public. This action extends the protective umbrella of Project Glasswing far beyond Payward’s own walls.
“Millions of people run their financial lives on our infrastructure, and what we find in the shared open source code beneath it goes back upstream, so the entire ecosystem hardens with us,” Sethi noted. This reflects a philosophy of collective defense, where the security of one major player contributes to the resilience of all. In an environment where threats evolve at an exponential rate, this collaborative hardening is essential. As Sethi put it, “Defense has to compound as fast as offense. Anything slower is losing.”
By leveraging frontier AI to not only protect its own unified infrastructure—which powers Kraken, NinjaTrader, and a growing family of financial products—but also to strengthen the foundational code of the digital economy, Payward is doing more than just managing risk. It is actively investing in the long-term trust and stability of the entire open financial system it aims to advance.
Topics & Related
Artificial Intelligence
Cryptocurrency & Digital Assets
📝 This article is still being updated
Are you a relevant expert who could contribute your opinion or insights to this article? We'd love to hear from you. We will give you full credit for your contribution.
Contribute Your Expertise →