Skip to content
CityAM
Main navigation
  • News
    • News
      • Latest Business News
      • Economics
      • Politics
      • Tech
      • Banking
      • FTSE 100 Live
      • Retail
      • Insurance
      • Legal
      • Property
      • Transport
      • Markets
    • From our partners
      • AON
      • Bayes Business School
      • Canada BIDs
      • Central London Alliance CIC
      • Destination City
      • Halkin
      • Olympia
      • Inside Saudi
      • Tottenham Hotspur Stadium
      • Santander X
      • YEAR SIX Dividend
    • Featured

      Can football conquer the US? Why culture is key this World Cup

      GettyImages 2281127577 featuring a significant news event or business setting, capturing key moments and interactions

      Submit a story

      Tell us your story.

      Submit
  • Opinion
  • Sport
    • Latest Sports News
      • Sport
      • Sport Business
    • From our partners
      • The Morning Briefing: SBS x CityAM
      • Aramco Team Series
      • LIV Golf
    • Featured

      Can football conquer the US? Why culture is key this World Cup

      GettyImages 2281127577 featuring a significant news event or business setting, capturing key moments and interactions

      Submit a story

      Tell us your story.

      Submit
  • Life&Style
    • Life&Style
      • Life&Style
      • Toast the City Awards
      • The Magazine
      • Travel
      • Culture
      • Motoring
      • Wellness
      • The RED BULLETiN
      • Do it with Shared Ownership
      • Media Speak Hub
    • Featured

      The best places to eat sandwiches in Lisbon, from bifanas to pregos

      Bifana do Afonsos famous bifana sandwich showcasing tender pork in a freshly baked roll with savory sauce.

      Submit a story

      Tell us your story.

      Submit
  • Investec
  • Events
  • Latest Paper
Tuesday 28 April 2026 1:55 pm  |  Updated:  Wednesday 29 April 2026 11:25 am

Why Mythos could destroy Britain’s banking industry

By:  Raj Abrol

Add as a preferred source on Google
Claude AI interface showcasing advanced AI capabilities for business applications
(Photo illustration by Michael M. Santiago/Getty Images)

AI is compressing the time between discovering a weakness and exploiting it – and that’s a huge threat to the banking industry, says Raj Abrol

The banking industry has spent the past year framing artificial intelligence as a productivity tool: faster coding, documentation, customer service and analysis. 

Anthropic’s Claude Mythos Preview, and Project Glasswing, the controlled defensive coalition around it, should change the conversation.

The issue is not that one model will bring down the banking system, it’s that AI is compressing the time between discovering a weakness and exploiting it. Work that once required specialist teams, rare knowledge and long reconnaissance cycles can now be accelerated, automated and handed to many more actors.

This matters more for banks than for almost any other industry.

Modern finance runs on vast, interconnected technology estates. Critical workflows depend on core platforms, third-party software, outsourced providers, open-source components, internal tools and interfaces that are not always visible from the boardroom. The attack surface has grown faster than the industry’s ability to map and control it.

Mythos exposes a stark asymmetry. A bank may need months to identify, approve, test, and deploy a fix, while an AI-augmented attacker may need hours to find the weak link. Some Mythos claims will be contested; smaller open-weight models may reproduce parts of the analysis. That reinforces the point. The trendline, not the headline, should drive board behaviour.

Nor is this just a technology problem. In banking, a cyber weakness can become an operational resilience problem, a third-party risk problem, a liquidity problem, a conduct problem and ultimately a confidence problem. It does not stay inside the IT department.

The point was illustrated on Mythos’s launch day, when a group on a private Discord channel reportedly obtained access to the model through an Anthropic third-party vendor. Even the most tightly gated defensive capability can still be exposed through the weakest point of its supply chain.

But while boards certainly shouldn’t be complacent, they also shouldn’t panic. The same capabilities that raise the threat level can raise the defensive ceiling. If AI can identify vulnerabilities, map dependencies and generate attack paths, banks should use equivalent tools to find weaknesses first.

Read more

Andrew Bailey steers push for Anthropic to meet global watchdog over Mythos

Bank of England Governor Andrew Bailey said the future of interest rates was "more uncertain".

However, it remains the case that too many banks still treat cyber assurance as periodic: annual penetration tests, scheduled audits, slow reviews and remediation plans moving at institutional speed. That rhythm no longer fits the risk. AI changes the clock speed. Regulation is pushing the same way: DORA, the UK operational resilience regime and SR 11-7 all point towards living inventories, evidenced remediation and continuous control validation.

The boardroom question should be specific: can we name our top ten critical business services, the third parties whose failure would disable them, and the median time from vulnerability disclosure to verified remediation for each? If the answer is “not in a week”, the bank is already exposed.

From periodic to continuous assurance

That means moving from periodic to continuous assurance: control validation rather than annual testing, dependency monitoring rather than static inventories, and prioritisation tied to the services that matter. It also means governed AI in the loop, with source traceability, human approval, data boundaries and incident response built into the workflow. If an AI tool cannot be governed, evidenced and challenged, it is not production-ready.

Project Glasswing carries another lesson. Access to frontier defensive capability is staged, not universal: JPMorgan Chase sits among the launch partners, with European and UK banks reportedly waiting for broader access. The question is not “when will we get access?” but “will we be ready to use it safely when we do?” Banks need to own the capability, operating model and governance, because the next defensive breakthrough will arrive on someone else’s schedule.

The opportunity reaches beyond cyber: the same capability that can reason across codebases and dependencies can help banks interrogate credit portfolios, detect control failures and surface risks before they crystallise.

Speed without traceability is not intelligence, just a new form of operational risk.

The winners will not ban powerful AI, nor scatter it recklessly. They will industrialise it: specialist models, governed workflows, traceable outputs, human oversight and measurable impact.

Mythos is not the end of banking security but it is the end of comfortable timelines.

The institutions that understand this will be able to defend themselves better as they will see risk earlier, act faster and compete harder.

 Raj Abrol is CEO of Galytix

Read more

‘Safe’ version of Anthropic’s Mythos model hits market

Anthropics AI technology showcased at a tech conference, highlighting innovative advancements in artificial intelligence

Share this article

  • Facebook
  • X
  • LinkedIn
  • WhatsApp
  • Email

Similarly tagged content:

Sections

  • Opinion

Categories

  • Opinion

People & Organisations

  • Anthropic
  • banking
  • cyber attack
  • mythos

Trending Articles

  • Can football conquer the US? Why culture is key this World Cup

  • Starmer agrees investment deal with Japan as EU deal questioned

  • Elon Musk becomes world’s first trillionaire after SpaceX mega float

  • US and Iran agree to peace deal’s text, negotiators say

  • Thames Water, energy grid, rent prices: Burnham drums up public control agenda

More from CityAM

  • Andrew Bailey steers push for Anthropic to meet global watchdog over Mythos

    Regulation
    Bank of England Governor Andrew Bailey said the future of interest rates was "more uncertain".
  • ‘Safe’ version of Anthropic’s Mythos model hits market

    Tech
    Anthropics AI technology showcased at a tech conference, highlighting innovative advancements in artificial intelligence
  • IMF warns AI cyberattacks could trigger global financial crisis

    Tech
    The ICO said it initially planned to fine Capita a total of £45m, but this was later reduced by “mitigating factors”
  • Hypha Emerges From Stealth, Announces a $50M Seed Round

    Business Wire
  • AI will ‘destroy and create jobs,’ says HSBC boss

    Banking
    Elhedery has quickly made his mark at HSBC with a major restructuring of its global operations.
  • Starmer’s Europe reset risks strangling UK AI sector with EU regulation

    Tech
    Keir Starmer
  • Andrew Bailey warns on AI: ‘Everybody is currently priced to be a winner’

    Tech
    Bank of England Governor Andrew Bailey said cited several indicators that the labour market was softening.
  • Money20/20 Europe Celebrates Ten Years of Industry Leadership as AI, Digital Assets and Financial Sovereignty Take Centre Stage

    Business Wire
  • Terms & Conditions
  • Privacy Policy
  • Cookie Policy
  • News
  • Markets & Economics
  • Politics
  • Opinion
  • Life&Style
  • Personal Finance

Follow us for breaking news and latest updates

  • Facebook
  • X
  • Instagram
  • LinkedIn
Copyright 2026 CityAM Limited