The Decoder · 2026/10/7 12:05:20
Anthropic 扩大 Claude 网络安全验证计划,放宽安全限制
Anthropic 将其“网络验证计划”(CVP)向更广泛的安全专业人员开放,允许经过审核的机构和个人在漏洞研究、恶意软件分析等场景中使用 Claude 最强模型并减少安全过滤。该计划分为防御、红队和特殊访问三个层级,旨在平衡 AI 辅助安全工作的效率与潜在滥用风险。据称,已有数万名高危漏洞通过此途径被发现,显著加速了安全工作流程。
报道全文原始报道全文
Anthropic is opening its Cyber Verification Program to a much wider pool of security professionals. The program gives vetted organizations and individual researchers access to Claude's most powerful AI models with reduced safety filters for vulnerability research, malware analysis, incident response, and penetration testing. The publicly available Claude models block most of that kind of work because the same capabilities could also help attackers. Basic tasks like code review or patching known flaws are still possible without special access.
The CVP splits access into three tiers. "Defense Access" is open to corporate security teams, government agencies, universities, critical infrastructure operators, open-source developers, and individual researchers. "Red Team Access" allows authorized attack simulations and is limited to organizations only. "Specialized Access" is reserved for testing systems like flight controls, power grids, or banking infrastructure. For this tier, Anthropic vets every applicant together with the US government.
Partners in the predecessor program, Project Glasswing, found at least 129,000 confirmed vulnerabilities between April and July 2026, according to Anthropic. More than 33,000 were classified as high-severity or critical. Those numbers come from surveys of a subset of partners, and Anthropic says the real-world impact is at least five times higher. Several partners reported that the AI sped up their work by months or even years.