The U.S. Department of Defense has escalated a dispute with Anthropic over the conditions under which its AI models could be used by the military, after Anthropic reportedly insisted on limits including no mass surveillance of Americans and no fully autonomous weapons. Reporting cited in both accounts indicates Pentagon officials have discussed potentially designating Anthropic a “supply chain risk”—a step that could bar the company from government work and pressure defense contractors to sever ties—while at least one senior official was quoted as saying the department would “make sure they pay a price” for non-cooperation.
At the same time, the Pentagon is engaging Anthropic, OpenAI, Google, and xAI to align all major U.S. AI providers on a common “baseline” of expectations, after contracts were signed with limited specificity and the department now wants to deploy models into DoD environments to enable broader development of AI agents with minimal human oversight. The coverage also describes the policy vacuum driving the standoff: key rules for military AI use are being shaped through ad hoc negotiations between the Pentagon and private AI firms, prompting calls for Congress to set durable, democratically accountable constraints rather than leaving governance to bilateral bargaining.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
15 events from the most recent confirmed update back to the earliest known activity.
By May 2026, the White House was preparing updated national security guidance encouraging AI vendor diversification and clearer deployment rules for defense use. Officials were also considering stronger oversight of advanced AI models, including possible pre-release reviews, citing both cyber defense benefits and offensive cyber risks.
Defense officials said the Pentagon would 'never again' rely on a single AI provider and was expanding relationships with eight companies to diversify its AI stack. The remarks framed vendor diversification and interoperability as a lesson from the Anthropic dispute and earlier dependence on Anthropic for classified AI integration.
Axios reported that as of April 19, 2026, the NSA was actively using Anthropic's Mythos Preview model despite the Pentagon's supply-chain-risk designation and broader federal phase-out of Anthropic technology. The report suggested Anthropic use may extend elsewhere in the department, highlighting a contradiction between official restrictions and operational adoption.
By April 2026, a federal appeals court in Washington allowed the Pentagon's supply-chain-risk blacklist of Anthropic to remain in effect, while a federal judge in California granted Anthropic partial relief limiting how broadly the designation could be applied. The rulings marked a new stage in the litigation beyond earlier hearings criticizing the government's actions.
Amid Anthropic's escalating conflict with the U.S. government, the UK government under Prime Minister Keir Starmer reportedly moved to attract the company with proposals tied to expansion and a possible listing in London. The outreach framed the UK as a strategic alternative while U.S. litigation over the Pentagon designation continued.
At a March 2026 hearing, Judge Rita Lin said the Pentagon's treatment of Anthropic appeared aimed at crippling the company and could amount to unconstitutional First Amendment retaliation rather than a genuine security measure. Government counsel also reportedly acknowledged the Defense Department had not followed required procedures, including briefing Congress and considering less restrictive alternatives.
In federal court proceedings over Anthropic's challenge to the Pentagon ban, a judge reportedly described the government's action as 'troubling,' signaling judicial skepticism toward the rationale or process behind the restriction. The remark marked a new stage in the legal fight following the DOJ's defense of the ban.
In response to Anthropic's request for a preliminary injunction, Justice Department attorneys argued in court that the action was based on operational and supply-chain security risks from vendor control over model weights, guardrails, and behavior, not retaliation for the company's AI safety views.
The Department of Defense designated Anthropic as a supply-chain risk for national security environments, barring it from supplying AI systems there and requiring agencies to transition off its models within 180 days.
The Trump administration directed agencies to phase out Anthropic technology from federal systems, citing concerns that the company could retain ongoing control over deployed models in sensitive environments.
By February 2026, the dispute had escalated to reported Pentagon threats to label Anthropic a supply chain risk, a step that could cut it off from government contracts and pressure defense contractors to sever ties.
The Defense Department said it was in active discussions with Anthropic, OpenAI, Google, and xAI to standardize expectations for deploying frontier models on Pentagon systems, including internal AI agents and pilots with minimal human oversight for lawful use cases.
During contract discussions, Anthropic refused a Pentagon term that would have allowed its AI systems to be used for any lawful purpose, citing internal restrictions on uses such as mass surveillance of Americans and fully autonomous weapons.
According to the new reference, Pentagon personnel used Anthropic tools in planning for the January 3 raid into Venezuela, and Anthropic reportedly learned of that military targeting-related use only after the fact. The disclosure adds a concrete example of operational use that fed later concerns about reliability, vendor control, and acceptable military applications.
Over the summer of 2025, the Department of Defense signed contracts with Anthropic, OpenAI, Google, and xAI with limited specificity, setting up later disputes over acceptable military uses and model controls.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
16 references tracked. Mallory keeps watching after this page renders.
nextgov.com
Open sourcegovinfosecurity.com
Open sourcebankinfosecurity.com
Open sourcecybersecuritynews.com
Open sourcems.now
Open sourcebankinfosecurity.com
Open sourcelawfaremedia.org
Open sourcenextgov.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.