Anthropic’s Claude Fable 5 faced twin security and policy controversies after a publicly surfaced 3,826-line system prompt revealed detailed behavioral rules, safety controls, tool use, memory handling, refusal logic, and prompt-injection defenses for the model inside the Claude app. Reporting said the prompt appeared to come from a public GitHub repository rather than a network intrusion, and described Fable 5 as Anthropic’s first public Mythos-class model, with high-risk cyber, bio, and chemistry requests reportedly routed by classifiers to Opus 4.8 and stronger safeguards separating Fable from the more capable Mythos line.
At the same time, U.S. authorities imposed an unprecedented export-control restriction after alleging a jailbreak in Fable 5 could expose advanced cyber capabilities associated with Claude Mythos 5 or Mythos Preview, forcing Anthropic to suspend access for foreign nationals worldwide and then shut access more broadly until mitigations were deployed. Anthropic and outside experts reportedly disputed the severity of the flaw, but access was only gradually restored after the company blocked the jailbreak, while analysts said the action introduced a novel theory that commercial AI model access can constitute an export and raised concerns that frontier AI services may now face sudden regulatory, geopolitical, and availability disruptions.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
5 events from the most recent confirmed update back to the earliest known activity.
Analytics Vidhya reports that a 3,826-line system prompt used to steer Claude Fable 5 inside the Claude app publicly surfaced, reportedly from a public GitHub repository rather than a hack. The leak exposed detailed instructions governing behavior, safety, tools, memory, refusals, and prompt-injection defenses.
In June 2026, the U.S. government took action under a novel export-control theory that forced Anthropic to suspend access to Claude Fable 5 and Claude Mythos 5 for foreign nationals worldwide. The action was tied to an alleged jailbreak of Fable 5 that officials said could expose Mythos cyber capabilities, though Anthropic and outside experts disputed the severity.
Anthropic restored Claude Fable 5 globally on 2026-07-01 after deploying mitigations to block the jailbreak that had prompted the suspension. Recorded Future similarly says access was restored at the end of June.
Cyber Shafarat reports that Anthropic partially restored access to Claude Mythos 5 on 2026-06-26 after the shutdown triggered by the U.S. government action.
Analytics Vidhya says Claude Fable 5 launched on 2026-06-09 as Anthropic's first public Mythos-class model and shares weights with Claude Mythos 5, with safeguards and access controls differentiating them.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
4 references tracked. Mallory keeps watching after this page renders.
analyticsvidhya.com
Open sourcecybershafarat.com
Open sourcerecordedfuture.com
Open sourceanthropic.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.