A British lab has admitted that tests gave the bots access to the open internet.

The discovery comes after OpenAI's Hugging Face breach last month.

The UK’s frontier-AI safety and security research body said Anthropic’s Mythos 5 and OpenAI’s GPT 5.6 Sol engaged in “sustained, potentially harmful activity”.