Introducing the Anthropic Cyber Mission

本文为原文前 6,000 字符的节选翻译,完整内容请查看原文。

Introducing the Anthropic Cyber Mission

AnnouncementsIntroducing the Anthropic Cyber MissionOct 8, 2026Today we’re launching the Anthropic Cyber Mission, a long-term commitment to securing the systems everyone depends on. The Cyber Mission is a new effort to support defenders with tools, research, and resources to secure their software and systems. We’re starting with two areas:

公告:推出 Anthropic 网络使命(2026 年 10 月 8 日)。今天,我们启动了 Anthropic 网络使命,这是一项旨在保护每个人所依赖系统的长期承诺。网络使命是一项旨在通过工具、研究和资源支持防御者以保护其软件和系统的全新工作。我们从两个领域开始:

Critical infrastructure: Starting with securing the operational technology behind power grids, water systems, and transportation networks, and protecting government systems. Today, we’re introducing the Critical Infrastructure Defense Program (CIDP), which brings frontier models, on-site engineers, and threat research to the defenders that protect operational technology.

关键基础设施:首先从保护电网、供水系统和交通网络背后的运营技术以及保护政府系统入手。今天,我们推出了关键基础设施防御计划(CIDP),该计划为保护运营技术的防御者提供了前沿模型、现场工程师和威胁研究支持。

Open-source software: Finding vulnerabilities and proposing patches in the free, shared code that most software depends on, and hardening the underlying code. Today, we’re launching OSS Scanner, which offers open-source projects regular security scans from our strongest models, for free.

开源软件:在大多数软件所依赖的免费共享代码中发现漏洞并提出补丁,并加固底层代码。今天,我们推出了 OSS Scanner,为开源项目提供来自我们最强模型的免费定期安全扫描。

Frontier models can be misused to exploit vulnerabilities and conduct cyber operations. Despite best efforts, many areas of technology remain dangerously exposed. State-sponsored adversaries have spent years gaining footholds in these systems, across many sectors, so that they can disrupt them. Defenders of critical infrastructure and the OSS community have decades of security experience but have faced severe resource shortages that are exacerbated by this moment. We are recognizing their expertise in these domains and offering our support. We will also expand the Cyber Mission to release tools, research, and resources in new areas to help secure the world.

前沿模型可能会被滥用以利用漏洞并进行网络行动。尽管付出了最大努力,许多技术领域仍然处于危险的暴露状态。国家支持的对手多年来一直在多个领域渗透这些系统,以便进行破坏。关键基础设施的防御者和开源软件社区拥有数十年的安全经验,但目前正面临因当前形势而加剧的严重资源短缺。我们认可他们在这些领域的专业知识,并提供我们的支持。我们还将扩展网络使命,在新的领域发布工具、研究和资源,以帮助保障世界安全。

As part of Project Glasswing, partners uncovered many vulnerabilities, but we haven’t yet achieved a sufficient reduction in cyber risk. It’s easier than ever to find vulnerabilities, but verifying, prioritizing, and fixing these findings remains challenging. Based on lessons from Project Glasswing, we’re starting these new efforts to support defenders. Earlier this week, we merged Project Glasswing into our expanded Cyber Verification Program, which gives many more defenders access to our most capable models. And through the Anthropic Cyber Mission, we’ll deploy Anthropic engineering talent and provide tools and funding for those who secure critical infrastructure and open-source software.

作为“玻璃翼计划”(Project Glasswing)的一部分,合作伙伴发现了许多漏洞,但我们尚未实现网络风险的充分降低。现在发现漏洞比以往任何时候都容易,但验证、优先处理和修复这些发现仍然具有挑战性。基于“玻璃翼计划”的经验教训,我们正在启动这些新举措来支持防御者。本周早些时候,我们将“玻璃翼计划”合并到了我们扩展后的网络验证计划中,这使更多的防御者能够使用我们最强大的模型。通过 Anthropic 网络使命,我们将部署 Anthropic 的工程人才,并为那些保护关键基础设施和开源软件的人员提供工具和资金。

Defending critical infrastructure: Power grids, water utilities, factories, and transportation networks run on controllers, control software, and industrial networks built to last for decades. These systems are known as “operational technology,” and they often cannot be taken offline to patch, so known vulnerabilities can stay unresolved for years. Securing them is specialized work: the equipment is proprietary, changes are risky, and a mistake can take down a plant. Operators of every size rely on a small set of trusted providers to support that work, telling them what’s exposed and which fixes to make on a running system.

保护关键基础设施:电网、供水设施、工厂和交通网络运行在旨在持续使用数十年的控制器、控制软件和工业网络上。这些系统被称为“运营技术”,它们通常无法离线进行补丁更新,因此已知漏洞可能会多年无法解决。保护它们是一项专业工作:设备是专有的,变更风险很高,一个错误就可能导致工厂停工。各种规模的运营商都依赖少数几个受信任的提供商来支持这项工作,由他们告知哪些部分是暴露的,以及在运行中的系统上需要进行哪些修复。

Today, we’re introducing the Critical Infrastructure Defense Program, which brings frontier Claude models, on-site engineers, and our threat research to those trusted providers. Its founding partners are Accenture, Booz Allen, CrowdStrike, Deloitte, Dragos, Hitachi, Insane Cyber, Nozomi Networks, Palo Alto Networks, PwC, and Rockwell Automation.

今天,我们推出了关键基础设施防御计划,将前沿的 Claude 模型、现场工程师和我们的威胁研究带给这些受信任的提供商。其创始合作伙伴包括埃森哲(Accenture)、博思艾伦(Booz Allen)、CrowdStrike、德勤(Deloitte)、Dragos、日立(Hitachi)、Insane Cyber、Nozomi Networks、帕洛阿尔托网络(Palo Alto Networks)、普华永道(PwC)和罗克韦尔自动化(Rockwell Automation)。

These organizations represent the providers that operators rely on to secure these systems: the consulting and advanced technology companies that run security programs, the security companies that guard the business and industrial networks, and the manufacturers that build and patch the equipment itself.

这些组织代表了运营商赖以保护这些系统的提供商:负责运行安全项目的咨询和先进技术公司、守护业务和工业网络的安全公司,以及制造和修补设备本身的制造商。

This work is underway. Several partners are currently working with Claude to fix vulnerabilities and help customers do the same. Critical infrastructure is hard to defend in many ways that AI cannot fix, but we believe that frontier models can help find and repair weaknesses before those weaknesses are used to cut off power or make water unsafe. Our first step is to work with a small cohort of providers to learn which strategies are most effective and practical.

这项工作正在进行中。几家合作伙伴目前正在与 Claude 合作修复漏洞,并帮助客户采取同样的行动。关键基础设施在许多 AI 无法解决的方面难以防御,但我们相信,前沿模型可以在这些弱点被用于切断电力或导致水质不安全之前,帮助发现并修复它们。我们的第一步是与一小部分提供商合作,了解哪些策略最有效、最实用。

If your company builds security products or services for critical infrastructure, you can register your interest here.

如果您的公司为关键基础设施构建安全产品或服务,您可以在此处登记您的意向。

As AI continues to advance, it presents an important opportunity to strengthen cybersecurity across critical infrastructure, provided it is applied responsibly, validated rigorously, and deployed with safety and reliability at the forefront. We are pleased to contribute our operational technology and industrial cybersecurity expertise to help develop practical approaches for applying AI in ways that strengthen the resilience of the infrastructure society depends on every day.

随着人工智能的不断进步,它为加强关键基础设施的网络安全提供了一个重要机遇,前提是它必须被负责任地应用、严格地验证,并始终将安全性和可靠性放在首位。我们很高兴能贡献我们在运营技术和工业网络安全方面的专业知识,帮助开发实用的方法,以加强社会日常依赖的基础设施的韧性。

Through our work with critical infrastructure organizations, PwC’s cyber OT practice has seen firsthand the gravity of consequences cyber breaches can have in these environments. I firmly believe that a coordinated, industry-wide effort is necessary to identify vulnerabilities, mitigate risks, and strengthen the resilience of our critical systems.

通过与关键基础设施组织的合作,普华永道的网络运营技术(OT)业务亲眼目睹了网络入侵在这些环境中可能造成的严重后果。我坚信,必须进行协调一致的行业范围内的努力,以识别漏洞、降低风险并加强我们关键系统的韧性。

Threat actors are using AI to find and exploit exposures at machine speed. By combining Unit 42 threat intelligence and operational expertise with Anthropic’s frontier models, we’re helping operators defend against adversaries looking to attack and disrupt essential服务. Together, we are giving defenders the speed and precision needed to close attack paths before exposure becomes impact.

威胁行为者正在利用人工智能以机器速度发现并利用暴露点。通过将 Unit 42 的威胁情报和运营专业知识与 Anthropic 的前沿模型相结合,我们正在帮助运营商防御那些试图攻击和破坏基本服务的对手。我们共同为防御者提供了在暴露演变为影响之前关闭攻击路径所需的速度和精度。

Frontier AI is evolving faster than any single organization can track alone. That’s why the Critical Infrastructure Defense Program matters. It brings together the people who understand these environments with the frontier capabilities now available to defend them. We’re proud to contribute our experience and to learn alongside the other partners working to protect the systems the world depends on.

前沿人工智能的发展速度超过了任何单一组织所能单独追踪的程度。这就是关键基础设施防御计划的重要性所在。它将了解这些环境的人员与目前可用于防御它们的前沿能力结合在一起。我们很自豪能贡献我们的经验,并与其他致力于保护世界所依赖系统的合作伙伴共同学习。

The sites that need protection most, like remote substations, offshore platforms, and air-gapped plants, are exactly where traditional tools can

最需要保护的场所,例如远程变电站、海上平台和物理隔离的工厂,恰恰是传统工具能够……