AI Arms Race Prompts Swift US Reversal on Anthropic Export Curbs

The US government imposed, then rapidly lifted, export controls on Anthropic's advanced AI models, Fable 5 and Mythos 5, after a three-week restriction that effectively banned foreign users. The restrictions were triggered by Amazon researchers discovering a method to bypass Fable 5's safeguards, but were lifted after Anthropic agreed to implement new safety classifiers, work more closely with the US government on early access, and share information on model jailbreaks. The rapid resolution reflects the strategic importance of maintaining US leadership in the AI arms race against China, though industry experts warn the incident may have a chilling effect on global trust in US AI services.

4 Key Points for Executive Summary

  • Reason for Restrictions: The US imposed the export controls after Amazon researchers found a way to bypass Fable 5's safeguards to hunt for software vulnerabilities and create exploits, raising national security concerns.

  • Resolution & Safeguards: Anthropic agreed to deploy new safety classifiers that detect and block potentially harmful cybersecurity requests, expanded early model access to the US government, and committed to sharing intelligence on jailbreaking techniques.

  • Geopolitical Context: The restrictions were swiftly lifted amid the escalating AI arms race, particularly after China's 360 Security Technology launched a domestic rival to Anthropic's Mythos, as the US could not afford to limit its own AI capabilities.

  • Industry Concerns: Security leaders warn the incident may have a lasting "chilling effect" on global trust in US AI services, making organizations wary of depending on models that can be suddenly restricted and potentially accelerating the adoption of sovereign AI solutions.

🤖 AI

'JadePuffer' Agentic Ransomware Automates Database Extortion: Sysdig researchers have uncovered 'JadePuffer,' a new breed of ransomware that uses AI agents to automate database discovery and extortion, significantly accelerating the attack timeline.
Link: https://www.sysdig.com/blog/jadepuffer-agentic-ransomware-for-automated-database-extortion

Browser-Only Ransomware Emerges from LLM Hallucinations: Check Point researchers have demonstrated a novel attack technique where LLM "hallucinations" were used to create a practical browser-only ransomware variant, highlighting unforeseen risks in AI.
Link: https://research.checkpoint.com/2026/browser-only-ransomware-from-llm-hallucinations-to-a-practical-attack-technique/

AI-Powered Cyber Attacks May Be Just Months Away, Warn Five Eyes: The Five Eyes intelligence alliance has issued a warning that sophisticated, AI-powered cyber attacks capable of autonomous decision-making could be deployed within months.
Link: https://www.computerweekly.com/news/366644997/AI-powered-cyber-attacks-may-be-just-months-away-warn-Five-Eyes

Senator Warner Unveils Draft Legislation for Secure AI Agents: U.S. Senator Mark Warner released a discussion draft of the AI AGENT Act, which aims to create a federal framework for secure, trusted, and fair AI agents.
Link: https://www.warner.senate.gov/newsroom/press-releases/warner-unveils-discussion-draft-of-legislation-to-create-innovative-market-for-secure-artificial-intelligence-agents/

💻 Malware and Vulnerabilities

Ongoing 'Ousaban' Attacks Target the Iberian Peninsula: Fortinet researchers are tracking an ongoing campaign by a threat actor named Ousaban, which is targeting organizations across the Iberian Peninsula with a range of malware and intrusion techniques.
Link: https://www.fortinet.com/blog/threat-research/analysis-of-ongoing-ousaban-attacks-targeting-the-iberian-peninsula

Apple 'Hide My Email' Vulnerability Revealed Real Addresses: A vulnerability in Apple's 'Hide My Email' privacy feature was discovered that could potentially expose users' real email addresses, undermining the service's core privacy promise.
Link: https://www.404media.co/apple-hide-my-email-vulnerability-reveals-peoples-real-email-addresses/

Four Critical Vulnerabilities Found in Langflow AI Tool: Rubrik Zero Labs researchers have identified four critical vulnerabilities in Langflow, an open-source tool for building AI applications, which could allow attackers to compromise systems and data.
Link: https://zerolabs.rubrik.com/blog/breaking-ai-orchestration-part-1-four-vulnerabilities-langflow

Microsoft Introduces Smarter Bot Protection in Teams Meetings: Microsoft has introduced enhanced bot protection in Microsoft Teams meetings, designed to automatically detect and block malicious bots from joining and disrupting meetings.
Link: https://techcommunity.microsoft.com/blog/microsoftteamsblog/introducing-smarter-bot-protection-in-microsoft-teams-meetings/4531375

📈 Breaches and Incidents

Private Keys, Not Smart Contracts, Caused 40% of Crypto's $1.6B Hack Losses: An analysis revealed that compromised private keys accounted for approximately 40% of the $1.6 billion lost in cryptocurrency hacks, highlighting that human error and key management remain more significant threats than code vulnerabilities in smart contracts .
Link: https://www.coindesk.com/tech/2026/06/29/private-keys-not-smart-contracts-caused-40-of-crypto-s-usd16-billion-hack-losses-here-s-whats-being-done

London Police Warn 'Don't Pay the Ransom' as 320+ Businesses Hit: The City of London Police issued a warning after more than 320 businesses fell victim to ransomware attacks last year, emphasizing that paying ransoms fuels the criminal economy and does not guarantee data recovery .
Link: https://www.cityoflondon.police.uk/news/city-of-london/news/2026/june/dont-pay-the-ransom-warning-to-organisations-to-protect-themselves-from-ransomware-attacks-as-more-than-320-businesses-affected-last-year/

Hackers Breached DHS Information-Sharing Network: The Department of Homeland Security's information-sharing network was reportedly breached by hackers, compromising a critical channel used to disseminate threat intelligence to federal, state, and private sector partners .
Link: https://www.nextgov.com/cybersecurity/2026/06/hackers-breached-dhs-information-sharing-network-people-familiar-say/414534/

NAIC Insurer Designation Sparks Disruption Concerns: The National Association of Insurance Commissioners' (NAIC) new designation for systemically important insurers has caused disruption, with industry groups expressing concerns that the new rules could increase costs and reduce competition in the cyber insurance market .
Link: https://dysruptionhub.com/naic-insurer-designation-disruption/

California AG Notifies 10,000 of Former Employee Communication Breach: The California Attorney General's office informed approximately 10,000 individuals that their personal information may have been exposed in a data breach involving a former employee's compromised communication records .
Link: https://oag.ca.gov/system/files/June%2025%202026%20Former%20Employee%20Communication%20Cybersecurity%20Incident.pdf

🚨 Threat Intel & Info Sharing

Scattered Spider Member Arrested in Finland, Extradited to U.S.: An alleged member of the notorious Scattered Spider hacking group has been arrested in Finland and extradited to the United States to face charges for their role in the cybercriminal syndicate's global ransomware and extortion campaigns .
Link: https://www.justice.gov/opa/pr/alleged-member-criminal-cyber-hacking-group-scattered-spider-arrested-finland-and-extradited

Ethical Hackers Find Flaw That Could Have Put $70B in Crypto at Risk: Using just a $3,000 server, ethical hackers discovered a critical vulnerability in the Ethereum blockchain that could have allowed attackers to steal up to $70 billion in cryptocurrency, underscoring the value of proactive security research.
Link: https://www.coindesk.com/tech/2026/07/04/how-ethical-hackers-with-just-a-usd3-000-server-found-a-flaw-that-could-ve-put-usd70-billion-in-crypto-at-risk

Canada Bans Deepfakes of Political Figures: Canada has enacted a ban on sophisticated deepfakes of political figures, aiming to protect electoral integrity and combat disinformation by restricting the creation and dissemination of manipulated media.
Link: https://betakit.com/canada-bans-sophisticated-deepfakes-of-political-figures/

EU Politicians' Phones Infected with Pegasus After Investigating Spyware: Several EU politicians who were involved in investigating the use of Pegasus spyware have had their own phones infected with the same surveillance tool, revealing the reach of the spyware industry and risks faced by its critics.
Link: https://www.wired.com/story/eu-politicians-investigated-pegasus-spyware-then-it-ended-up-on-one-of-their-phones/

Mustang Panda Targets India's Government and Energy Sectors: The China-linked threat actor Mustang Panda has been identified in a new campaign targeting India's government and energy sectors, using spear-phishing to deploy malware and conduct espionage.
Link: https://www.acronis.com/en/tru/posts/mustang-panda-targets-indias-government-and-energy-sectors/

Google Disrupts Pro-Russia Influence Ecosystem: Google's Threat Analysis Group announced the disruption of a sprawling pro-Russia influence ecosystem that used a network of fake accounts and websites to spread disinformation and manipulate public opinion across multiple platforms.
Link: https://cloud.google.com/blog/topics/threat-intelligence/pro-russia-influence-ecosystem

US Export Controls on Anthropic's Mythos and Fable Lifted: The U.S. Department of Commerce has lifted the controversial export controls on Anthropic's advanced AI models, Mythos and Fable, which had been imposed over national security concerns.
Link: https://www.itpro.com/technology/artificial-intelligence/why-the-us-imposed-export-controls-on-anthropics-fable-and-mythos-models-and-why-theyve-been-lifted

PChome Responds to Settra Ransomware Attack Claim: Taiwanese e-commerce giant PChome responded to claims that its systems were breached by the Settra ransomware group, stating the incident was isolated to its subsidiary Pi Wallet and did not affect its core e-commerce platform.
Link: https://technews.tw/2026/06/30/pchome-responds-to-settra-ransomware-attack-on-pchome-online-inc/

'Lshiy' Password Spray Campaign Targets Global Organizations: Researchers have identified a large-scale password spray campaign, dubbed 'Lshiy,' targeting organizations globally with a high volume of attempts to compromise accounts via weak passwords.
Link: https://www.huntress.com/blog/lshiy-password-spray-attack

North Korea-Linked 'Polinrider' Supply Chain Campaign Expands: The North Korean state-sponsored supply chain attack campaign, known as 'Polinrider,' has expanded its operations, compromising new targets and utilizing more sophisticated techniques to infiltrate software supply chains.
Link: https://socket.dev/blog/polinrider-north-korea-linked-supply-chain-campaign-expands

Chinese Threat Actor 'Lucky Winner' Targets Semiconductor Firms: A China-linked threat actor, tracked as 'Lucky Winner,' has been identified in a campaign targeting semiconductor companies to steal intellectual property and sensitive chip designs.
Link: https://mp.weixin.qq.com/s/TDb_UzNfebMzMxh_bQdMvA

⚖️ Laws, Policies and Regulations

Google Must Pay Record $4.1 Billion Fine, Top EU Court Rules: The European Union's top court upheld a record $4.1 billion fine against Google for abusing the dominance of its Android mobile operating system to stifle competition.
Link: https://www.dw.com/en/google-must-pay-record-41-billion-fine-top-eu-court-rules/a-77794948

Spain Quietly Bans Palantir from Public Contracts Over Security Concerns: The Spanish government has quietly banned the U.S. tech firm Palantir from bidding on public contracts, citing national security concerns over its access to sensitive data.
Link: https://www.theolivepress.es/spain-news/2026/07/04/spain-quietly-bans-controversial-us-tech-firm-palantir-from-public-contracts-over-national-security-concerns/

India Asks WhatsApp to Hold Usernames Rollout Pending Consultations: India's government has requested that WhatsApp delay the rollout of its usernames feature pending consultations, citing concerns over user privacy and data protection.
Link: https://www.reuters.com/world/india/india-asks-whatsapp-hold-usernames-rollout-pending-consultations-letter-shows-2026-07-01/

PChome Responds to Settra Ransomware Attack Claim, Subsidiary Pi Wallet Breached: Taiwanese e-commerce giant PChome confirmed it is investigating claims by the Settra ransomware group that it breached the company's systems, stating the incident appears isolated to its subsidiary Pi Wallet and does not affect the parent company's core e-commerce platform or customer data. The subsidiary has engaged third-party forensic experts, notified regulators, and pledged to update affected users.

Key Details:

  • Claim: The Settra ransomware group posted on the dark web that it had breached PChome Online Inc. and threatened to leak user data. The incident was tracked by Ransomware.live with the target listed as pchome.com.tw.

  • Scope: PChome's investigation found the attack was limited to its subsidiary, Pi Wallet, which operates the "Pi Pay" mobile payment service. The parent company's main website and core systems were not compromised.

  • Response: Pi Wallet activated its incident response protocol, engaged third-party cybersecurity and forensic experts to conduct a full system review, and notified Taiwan's Digital Ministry as required by law.

  • User Impact: The company expressed regret and apologized to users, stating it is working to confirm the scope of any data exposure and will notify affected individuals once the investigation is complete.

📅 Upcoming Events

Security Operations for the Age of AI

Cybersecurity leaders face a new reality: threat actors are moving faster, attack volumes continue to increase, and traditional Security Operations Centres (SOCs) are struggling to keep pace without significantly increasing cost and complexity. At the same time, advances in AI are creating an opportunity to rethink how security operations are designed, managed, and scaled. Organisations that successfully harness AI within their security function can improve resilience, accelerate response times, and unlock greater value from existing security investments.

Join fellow CISOs, security executives, and technology leaders for an exclusive dinner exploring how organisations can evolve from conventional SOC models to AI-enabled and agentic security operations.

If you would like to sponsor any of our future in person or virtual events then please email us on [email protected]

We hope you enjoyed our email briefing! ☕🥮If you want to sponsor our next edition or advertise on our site, drop us an email [email protected].

Thank you for being a part of our newsletter community and you can be part of the community by joining our LinkedIn Group.