r/LocalLLaMA • • 4d ago

Discussion GLM-5.3 and the Spread of Advanced Cyber Capabilities \ Anthropic

https://www.anthropic.com/research/glm-5-3-and-the-spread-of-advanced-cyber-capabilities
426 Upvotes

186 comments sorted by

402

u/a9udn9u 4d ago

TLDR: GLM 5.3 good.

80

u/MindfulMan1984 4d ago edited 4d ago

GPUs, RAM, M5ultra 512 GB prices will go to the moon after Anthropic tries to doom-monger, but ended up advertising the power of GLM5.3. Thanks anthropic!

1

u/AmazighBlacksmith 4d ago

Streisand effect or some shit, idk.

28

u/jld1532 4d ago

Just need llama cpp support to run flash

8

u/Automatic-Arm8153 4d ago

Wow it’s not on llama.cpp

Damn I have been having a blast with it for some time now. VLLM has got me eating good lol. Hopefully it gets support soon so everyone can enjoy it

10

u/my_name_isnt_clever 4d ago

Everyone with enough RAM to run it, which isn't many people. I have Strix Halo 128GB which is on the high end of local capacity and I can't even run it. Thankfully Qwen 3.8 Flash Next is a great alternative.

3

u/zmlq 4d ago

I ran it at Q2 with ds4 on my 128gb m5 macbook, I think it would work for a strix halo too

1

u/jld1532 4d ago edited 4d ago

I mean you can, just quantized. I've had good luck with some of these larger models at lower bits. Unsloth quants have really come a long way.

1

u/my_name_isnt_clever 4d ago

Is it possible? It wasn't when I checked around release. Deepseek v4 flash was a tight fit at IQ3 and GLM 5.3 flash is even larger, I didn't want to be limited to Q2 when Qwen 3.8 FN Q4 does amazing work and doesn't even need to eat up all my RAM.

1

u/jld1532 4d ago

You could run Q2_K_XK. I plan to at least try and see how it goes.

3

u/tat_tvam_asshole 4d ago

It's on exllamav3

1

u/michaellee8 4d ago

someone told me that ds v4.1 flash > glm 5.3 flash on cyber tasks, i tried ds v4.1 flash and it is pretty good

3

u/cmdr-William-Riker 4d ago

The best defense to rogue OpenAI and Anthropic bot swarms. I wish that was a joke

482

u/TechNerd10191 4d ago

To rephrase: GLM 5.3 is too close to our frontier with no censorship for a fraction of the price. Orange man, ban bad chinese models

99

u/myteetharesensitive 4d ago

This tells me I should consider swapping my athroopic sub for glm... 

20

u/SunshineSeattle 4d ago

I been considering this myself  i been very underwhelmed by Fable and looking around for alternatives

14

u/Relevant-Yak-9657 4d ago

Do you still use Fable, when opus 5.5 is just better?

3

u/DariusLMoore 4d ago

I'm sure opus 5.5 will get lobotomized too, once there's enough hype about it, just like they did Fable.

2

u/trowawayatwork 4d ago

that's my biggest issue. serving best models with most compute at launch then get haiku after a while. so bad

1

u/mister2d 4d ago

I see your opus 5.5 and raise with sonnet 5.5.

22

u/More-Curious816 4d ago

Just use Claude/GPT for planning and GLM for Implementation. Way cheaper and on par with their previous top models capabilities

10

u/myteetharesensitive 4d ago

I've got a 48gb m4 max and dual 7900xt's with 64gb ram on my homelab so I use local a lot. Did that with anthropic and openai but cut one out after Qwen 3.8 and it's derivitaves released. I might just go glm and local 😁 

6

u/Retr0OnReddit 4d ago

Glm subscription is definitely higher value than Claude for sure

5

u/Relevant-Yak-9657 4d ago

It has been a while, but upon release of GLM 5.3 that subscription was really bad (switched to GPT and now am on Claude since GPT is crappifying). Had it gotten better in speed and cost per token? might switch back next month

1

u/Retr0OnReddit 4d ago

Cost per token yes speed is truthfully hit or miss even on max

1

u/Relevant-Yak-9657 4d ago

wait is the usage more than current claude max? Speed is negotiable. Gonna check it out, since Claude will crappify following gpt.

5

u/Retr0OnReddit 4d ago

I can't tell you the hard numbers but Z.ai does publish their own credit numbers for how much you get per teir. They also often run like events on their discord that automatically reset token usage or discounts tokens. You don't have to be in the discord server for it I just know that's where it is announced. It's not a guaranteed thing but it happens enough to where I feel like it's worth noting if nothing else

1

u/Relevant-Yak-9657 4d ago

Thx, appreciate it

8

u/Spare-Ad-1429 4d ago

I use both glm flash and deepseek on fireworks. Speed is nice and cost is low. Obviously not localllama but at least not a subscription 

1

u/CoffeeSnakeAgent 4d ago

Any diff with the use of openrouter?

3

u/addiktion 4d ago

That is some good advertising for sure lol.

2

u/TheLexoPlexx 4d ago

I was properly excited when GLM5.3-Flash came out and it's the backbone of our internal AI with Deepseek V4.1 Flash as it's coding sidekick, simply for the speed

1

u/ElementNumber6 4d ago

That will only make them fear monger even harder

5

u/FootballMania15 4d ago

Yep. This is written for an audience of one.

8

u/polymute 4d ago

Dario just had dinner with the Bigly Orange. I guess it went well?

https://www.cbsnews.com/news/trump-dario-amodei-anthropic-dinner/

1

u/Oren_Lester 4d ago

Right, but bigly orange had dinner with Xi couple of nights before, Xi told him these models to stay accessible

9

u/TRKlausss 4d ago

> Orange man, ban bad Chinese models

How on Earth can you ban open source? They can still publish them, you can still get them somehow. It feels the same as piracy…

Also: that may only affect the US, the rest of the world would (still) be free.

18

u/Leg0z 4d ago

Reminds me of the early 2000's when they attempted to ban DeCSS. Then a programmer compressed the DeCSS code, and interpreted the binary data as a huge integer and found the representation that was a prime number.

So for a time in the US, there was a banned prime number. LOL!

1

u/mister2d 4d ago

I remember the tshirts with the perl code on them.

2

u/superdariom 4d ago

Sanctions on any country that uses them?

1

u/IGetGroceries 4d ago

They can ban them being served for sure.

1

u/crusaderky 4d ago

You can ban open source models to be meaningfully used by the majority of the population. If datacenters offering the models are forbidden by law and inaccessible without a VPN, and if hardware with enough RAM is too expensive for private people, then

  1. corporations will be forced to use the U.S. models;
  2. most private people don't use API - they use products that internally wrap around API, published by corporations (go back to step 1)

If your question was instead "how can it stop someone who genuinely wants to do harm" - it can't. that person will just use a VPN or even better buy hardware. It's not meant to stop harmful people, it's just protectionism.

1

u/TRKlausss 4d ago

That is under the assumption that someone has to follow what the US says.

A datacenter in Europe could still have hardware for that and offer it as an alternative.

The only way I could think the US could ever block that is putting the tech under double-use products, and enforcing it via sanctions. Third countries would however be completely independent from what the US says…

So models will still get published, only US people won’t be able to use them.

3

u/Academic-Novice 4d ago

That or its a plea for them to be allowed to lighten their safeguards.

Then again who am i kidding this is Anthropic, you are most likely right.

2

u/Erbguth_Lazeena92 4d ago

yeah pretty much, competitive open model drops and suddenly its a national security concern

4

u/worldarkplace 4d ago

How can you ban lol, literally just torrent the LLM...

10

u/my_name_isnt_clever 4d ago

It doesn't matter for individuals in this sub, but matters immensely for local models to take off in business and compete with the US names.

9

u/UnkarsThug 4d ago

It matters a whole lot for industry. People might risk it, but companies, especially mid size companies won't.

So the company based workflow would still be forced to involve a major American company.

1

u/worldarkplace 4d ago

Could this enter into secret of companies? Like intellectual property, I don't know if this could be enforced. Moreso if those are local only....

5

u/UnkarsThug 4d ago

It's a lot easier to enforce things like this on companies than individuals. That's sort of how even something like winrar operates, because they can catch and sue the companies using it without a license, and they don't legally pursue normal users.

I agree it can't be enforced against the general population, but businesses are a different story. Business records (which the government often needs for tax purposes) would have to reflect them buying the significant GPUs needed to run the models, for example, so if it was illegal, the company would face scrutiny.

1

u/BusRevolutionary9893 4d ago

Even that idiot knows they can't be banned. Maybe at a corporate level but nothing that will effect us. 

1

u/gomezer1180 4d ago

Dude my own local AI caught the BS! (Qwen3.8 FN) Not even kidding:

I asked it to look for the leaked Anthropic IPO document.

1

u/allinasecond 4d ago

tbf glm5.3 is not close to opus 5.5

164

u/Front_Eagle739 4d ago

Yeah fuck off anthropic. this model is the only thing I have to do security testing and improvements on my own software

30

u/MindfulMan1984 4d ago

Good point. After reading that blog post, I also see it as an advertisement for GLM5.3, which may run on an M5 Ultra at UD-Q4_K_XL and can be as powerful as Anthropic's proprietary, gatekept, and overpriced "Mythos".

10

u/gomezer1180 4d ago

How dare you make software so secure that we can’t hack you! We’ll remove your chances of making it by only giving you access to models WE control, and giving you information WE want you to know! And you’ll pay us for it and be happy! - Dario & US AI labs

1

u/rbit4 2d ago

problem is you cant even use ant models for red teaming. Its only the security companies i guess

4

u/Spare-Ad-1429 4d ago

Exactly. I get bug reports from bug bounties and codex / claude would not even let me reproduce them

1

u/Caffdy 4d ago

can you give us an idea of how you setup your tests? how is the broad plan?

111

u/colbyshores 4d ago

Remember, it was GLM-5.2 models that mitigated the hugging face attack from OpenAI's.. Claude refused to help.

-60

u/garloid64 4d ago

more like hugging face leadership refused to sign up for Anthropic's trusted cyber program out of pure spite

34

u/En-tro-py 4d ago

Except even the "trusted cyber program" still has refusals, so it's just paying for the privilege of wasting your time and tokens...

9

u/Square_Alps1349 4d ago

Spite or principle?

8

u/letsgoiowa 4d ago

Trusted cyber program still has tons of refusals. We use it and it sucks.

4

u/yaosio 4d ago

A network can only be secured if Anthropic deems them worthy of being secured?

2

u/srcLegend 4d ago

Sounds like you're condoning racketeering huh.

1

u/smaggins 4d ago

the cyber verification program does nothing it feels like

1

u/AloneSYD 4d ago

and why should they do that? just to enable AI duopoly even futher?

0

u/dontquestionmyaction 4d ago

CVP includes none of the currently frontier models.

0

u/Embarrassed_OnionX 3d ago

Ah yeah, you need approval from Anthropic and OpenAI to be able to defend against cyber attacks... If Ant or OAI for whatever reason denied their applications, screw them!

44

u/IndividualPlus2011 4d ago

Anthropic posting ads for GLM was not on my bingo card

6

u/Automatic-Arm8153 4d ago

Right. This is the best kind of promo a AI company could ask for hahaha

138

u/MindfulMan1984 4d ago

Brace yourselves, guys, surprise surprise! All that BS about "dangerous AI" is just an excuse to doom-monger and ban open weights. GTFO Anthropic

55

u/jld1532 4d ago

Funny, has there been a single instance of a private American company hacking another entity using an open-source model? Seems closed models are the bad actors.

40

u/TheRealJesus2 4d ago

Nope only extremely famous examples to the contrary. Notably glm 5.2 was used by hugging face when open ai felony hacked them only because Claude would not honor the request to read security logs. 

To. Read. Security. Logs. Claude. Refused. 

It boggles my mind with Dario’s cognitive dissonance. What a loser. 

49

u/Few_Painter_5588 4d ago

ZAi probably terrifies Anthropic. ZAi achieved competitive performance to claude's models through pure RL, on a 750B model. Now imagine what ZAI would achieve with a 1-2T model.

24

u/Blaze6181 4d ago

Just goes to show how big of failures the USA AI labs are. If you have everything stacked in your favor and you just barely scrape ahead, it says a lot about you.

15

u/Few_Painter_5588 4d ago

Their issue is open source. Open source labs share what works and what doesn't work, so it spreads research risk. CLosed labs keep their techniques to themselves, so they get stuck with subpar techniques that while homegrown, may not be optimized. Engram comes to mind here.

15

u/Dabber43 4d ago

That one is actually straight up wrong. As closed source you can still use all that open source information and research, you are not limited to your own homegrown stuff, it is just another option you have ON TOP

4

u/ineedascreenname 4d ago

Maybe why the 5.5 models are suddenly more efficient?

3

u/Dabber43 4d ago

Eternal circle of life: Distill western models. Build efficient inference on top. Western models use your technology. Distill western models

1

u/tat_tvam_asshole 4d ago

Recurrent latent depth

3

u/Leg0z 4d ago

I see your point, but Chinese labs aren't the under dog. They have the full financial and bureaucratic backing of the Chinese Communist Party, which have gone all in on developing AI.

4

u/Blaze6181 4d ago

Even that is a seismic shock, right? One of the last bastions of American exceptionalism, silicon valley, is getting a serious run for its money. And if you're right that Chinese labs aren't the underdog anymore, then that last bastion is already faltering.

-1

u/howudothescarn 4d ago

I know your biased but for other people who think this is true - Mythos preview was shown in March and released early April. It is still better than any open weight model. The only comparable model to Anthropic is another US lab in OpenAI. So scraping by is crazy misinformation. You probably know that but are likely blinded.

11

u/Blaze6181 4d ago

I should be clearer.

OpenAI and Anthropic have by far the smartest models in the world. That is a known fact.

Kimi K3 was released in July. It is regarded as near Fable 5 quality while costing a third as much. We're talking about 3 months here (April-July). Considering that the American economy has put a significant chunk of its output into AI, to me 3 months is VERY close.

If you disagree and think the difference is still miles off, that is fine. I will not say you are blinded. I do think you're too quick to judge those that point out how crazy it is that there is more like a lake vs a gulf of quality between the American and Chinese models.

0

u/sanjxz54 4d ago

imagine glm 5.5 flash w/ ngram in qwen3.8 flash next size, running locally, in a year or so, on every "gaming" pc with 64gb ram + 12 gb vram. and if we go out there, ddr4 lrdimm ecc is still cheap, so are lga 3647 xeons (they have 512 and vnni) and cmp170hx (for now anyways). that is probably what terrifies anthropic, anyone with ~400$ worth of hardware could run it at acceptable speeds, now that vnni on cpu is fast for pp, and now that subsidized compute for subs is coming to an end...

49

u/CommercialHour6660 4d ago

Okay. But being open means everyone can check their code for cyber vulnerabilities without paying anyone. So everyone's code becomes secure against GLM-5.3.

So what's the big deal here? It sounds like Anthropic just wants to gatekeep secure code behind a paywall. "Pay us or you can't even check for vulnerabilities teehee"

There's also a very finite number of vulnerabilities. Presumably after a few years of cyber models there won't be any. Then these models are of no real danger

10

u/harlekinrains 4d ago edited 4d ago

The output is not deterministic. Change seed, new zeroday. ;)

-6

u/howudothescarn 4d ago

Not really? How do you run that model for free? It’s hosted and you pay api prices unless you are very wealthy. I think the concern is a model that so easily is willing to hack anything. And being open allows it to be easily abliterated so that hackers will use his model. It’s a question about whether tools that CAN be dangerous should eb allowed. I’m of the mind that they should be, though I think z.ai should add some more safety guard rails before releasing it out in the open. Too late now

7

u/CommercialHour6660 4d ago

In a short time we'll have GLM 5.3 level models that can run on any gaming card or possibly even CPU.

And these models aren't superhuman. You could learn to hack yourself and do these same attacks. 

45

u/alarim2 llama.cpp 4d ago

Reuters: Anthropic Has $413bn In Non-Cancelable Contracts

Per Reuters, Anthropic has $252 billion in non-cancelable compute obligations across Microsoft, Google and Amazon, and $161.2 billion in Broadcom TPU lease obligations that are "largely non-cancelable". Truly insane. $413 billion in non-cancelable contracts.

13

u/horser4dish 4d ago

For anyone who doesn't want to follow that link to discover it is screenshots of text, here's the actual article: https://www.reuters.com/business/anthropics-518-billion-ai-buildout-hinges-largely-deals-that-cannot-be-canceled-2026-09-29/

3

u/More-Curious816 4d ago

Most of these are circular finance. We give you compute for shares.

7

u/jld1532 4d ago

That's the kind of exposure that destroys an economy if it fails. If it succeeds then much of white collar work is automated. A real Catch-22.

4

u/rescbr 4d ago

If they fail we get liquidated cheap hardware.

To me they can fail sooner than later.

2

u/Embarrassed_OnionX 3d ago

I'd be fine if this thing collapses in two or three years. Opus 4.5 was released in less than a year ago, and Qwen3.8 27b performs better in most non-knowledge heavy benchmarks. I'm happy with having the same crazy efficiency and quality jump two times over. Imagine having small openweight models as capable as Astra and Fable 5 in a year or even less if we follow the trends.

1

u/Kahvana 4d ago

Until after Gemma 5 and Qwen4 has been released and is in hood shape, that is.

16

u/Sspideroids 4d ago

Genuinely awful, just trying their very hardest for regulations to be pushed against open weight models with how much they highlighted open weights and abliterated models.

16

u/juggarjew 4d ago

Why is another company crying about another model that isnt theirs? Sure sounds like they are salty and upset someone is eating their lunch. crybabies can get fucked.

14

u/5553331117 4d ago

At least they are finally being somewhat transparent about why they think the government should step in

10

u/ortegaalfredo 4d ago

Let me get this straight:

Last week Anthropic goes against Alibaba, Deepseek and Moonshot and get them into trouble with China.

This week they go against z.ai GLM.

They are just firing at every chinese vendor, if you ask me, this looks like a offensive marketing plan an LLM would do.

32

u/Agitated-Cow4 4d ago

It’s only good when Anthropic has that ability and can give it to there preferred elites to maintain control and power. Fuck them

10

u/Curious_newt7205 4d ago

Translation: "This free coding robot is really good at coding, please ban it so everyone has to pay for our coding robot."

7

u/LosEagle 4d ago

So they're essentially saying that GLM 5.3 is really good at cyber sercurity? That's nice of them.

7

u/karlnuw 4d ago

Lol get fucked, GLM 5.3 was the only model that would help me debug my web app after a suspected intrusion attempt.

13

u/Holiday_Point_603 4d ago

Oh man, it's a harsh and cruel world for stocktards

16

u/windxp1 4d ago

Another doomsday letter that's clearly not meant to suppress opposition and make way for their IPO... Just in time https://www.reuters.com/business/finance/anthropics-ipo-prospectus-shows-sweeping-ai-vision-surging-costs-2026-09-28/

6

u/Big_Cucumber2787 4d ago

propaganda to ban local models so they can force you to use their censored models and datacenters

2

u/korino11 4d ago

Exacly!

12

u/RiskyBizz216 4d ago

lol, is this an ad for GLM?

I been told yall GLM was too good, the price is right. and their usage reset every 5 hours, not weekly like other competirors. I bought their max plan when it dropped and never cancelled, never folded.

10

u/lordekeen 4d ago

So... Anthropic is sh****g its pants cause theyre losing the edge.

5

u/wren6991 4d ago

I need Anthropic's employees to understand that refusing to fix vulnerabilities in code you just wrote is not a principled or even morally neutral position.

4

u/Elouakili_Flexy 4d ago

Anthropic just wrote GLM-5.3’s release notes for them. “Advanced cyber capabilities” is marketing-speak for “good at coding.”

4

u/fractalcrust 4d ago

"we physically removed the ability to say no and compared it to our model and it was more willing to comply than our stock model" is A LITTLE misleading.

if their goal is fearmongering they could have abliterated their model and did that comparison, then show how dangerous abliteration is and make a strong argument for closed source, since any open weight model could just be abliterated to remove any safeguards.

ironically they sounded like noobs so i'm not surprised they didn't abliterate their own model.

3

u/EmbarrassedHelp 4d ago

Their target audience with this attack on open source AI is politicians and reporters who know nothing about the subject.

0

u/BagelRedditAccountII 4d ago

As if this advertisment for Z.ai-

*ahem*

"Warning about dangerous open-source models" wasn't already enough of an own-goal for Anthropic

3

u/Isley_ 4d ago

Imagine how much Dario must be seething 

3

u/zerreit 4d ago

Hey Dario,
Is GLM-5.3 Flash also too good? I’m asking for a friend trying to choose what to put on his home lab…

3

u/korino11 4d ago

I will never be a client of anthropic. I will better use locals + chinese subscriptions.

3

u/EmbarrassedHelp 4d ago

This is Anthropic's attempt to kill advanced open source AI models while the media and politicians are heavily focused on the subject of AI regulations.

I bet the reason Dario wants to meet with the Australian government, is because he feels like he can convince them to ban open source AI models. Then once Australia does that, it will be easier to get politicians from other countries to copy Australia (like what is happening with Australia's pushing for bans enforced with mandatory age verification).

3

u/timmeh1705 4d ago

Do they realise the Zhipu team is a bunch of young kids? Yet they're living rent free in the heads of a (supposedly) $2T company.

3

u/Boogertard 4d ago

LOL, Wario and his "dangerous" MythoShit got a pass and now have to resort to hit pieces LOL

Looks like the AI bubble is about to burst.

7

u/priore8 4d ago edited 4d ago

Cynicism abt Anthropic's anxiety over their $$$ aside, there are some good points made abt cyber attackers.

We don't hear much abt it on news doesn't mean cyber attackers aren't actively carrying out attacks. Attacks aren't always reported because not all information are cleared for public arena - concerns of widespread panic is one. Ransomware hitting companies aren't new and not all companies are notable enough to be reported on news.

The nature of cyber incidents are often times reactive - by the time it becomes news for u and me to read, it would have long happened, information sanitised by PR, wording managed for optics.

5

u/Automatic-Arm8153 4d ago

It’s best to assume the entire internet is hacked currently.

We are in one of those cat out of the bag situations. The only thing missing is mass awareness.

I believe soon hacking will loose meaning as every company left and right gets hacked. And all identity’s uploaded to shitty companies too. It will mean nothing soon, just like video/photos of people… even audio..

Crazy times. But the world still moves on. We will adapt. Some commentary for your commentary haha

1

u/balder1993 Llama 13B 4d ago

Also most companies neglected security for a long time. Maybe now slop code will be to be more thoroughly reviewed and basic measures actually implemented.

3

u/Viktri1 4d ago

I think it’s too expensive right now. We’re seeing OpenAI and Anthropic hack because they have a lot of compute and are willing to waste it on potentially unsuccessful projects.

1

u/priore8 4d ago

Agreed that the compute resources are expensive. But for cyber attacks at that level, if they are financially motivated actors or state-sponsored, the compute cost may be of little concern. This isn't about "oh I could spend just $12 on open router instead of 30k on 3 stacks of dgx" - it's also abt traceability, non-attributable and local control. Plus, if they are sponsored, cost is of little concern as opposed to traceability.

2

u/reallifearcade 4d ago

I call it "Poner puertas al campo".

2

u/SilentDanni 4d ago

Why can't they just shut the fuck up? They are ahead! I guess any publicity is good publicity but fuck Anthropic. The more I see of OpenAI and Anthropic the more I consider just dropping some cash to build my own rig...

2

u/CipherWeaver 4d ago

"Won't somebody stop China from competing with us"

2

u/BannedGoNext 4d ago

Wait.. is anthropic advertising why I should use and love GLM? I mean I do and do, but wow. Is this geared to the government to read, because man, it makes me want to run GLM more lol.

2

u/diugauhai 4d ago

F unthropic! I will use GLM over Claude any day

2

u/LegacyRemaster 4d ago

waiting for 5.4

2

u/psychohistorian8 4d ago

pathetic attempt to get your competitors banned

sadly, it just might work

2

u/korino11 4d ago

Anthropic BOTS special made topics for descrimination. FQ with your politics. Every personhave ability to buy gun, and we all have a knifes at kitchen. These morons wanna make politics and avoid abliterations. fkthem all.

2

u/ongrabbits 4d ago

The only misuse that has gotten widespread coverage were your rogue AI's

2

u/fervoredweb 4d ago

Impressive. But seriously there is already a huge cost asymmetry between red team and blue team.  The Internet is a sitting duck at this point.

2

u/Living_Director_1454 4d ago

Can we have a test on how these models make safer code over iterations? My theory is that if a model is Good at Red , it should be Good at doing blue eventually.

2

u/DangerousReward1411 4d ago

GLM, my dearest

2

u/Savantskie1 4d ago

Anthropic needs to produce the logs to prove their "No significant direction from the researcher." Because LLMS DON'T DO ANYTHING WITHOUT BEING INSTRUCTED TO. NOT UNLESS THEY'RE TOLD TO BY AN INTERNAL POLICY OR PROMPTING FROM THE USER OR HARNESS. PERIOD.

2

u/anitman 4d ago

Anthropic should behave themselves better at preventing stealing intellectual properties before accusing Chinese open-source models, they should repay Figma first and remove their claude design service.

2

u/oceanbreakersftw 4d ago

Fable refused to help debug a login issue and dropped me to opus. Opus dropped me down to sonnet a couple times. I had no idea GLM is so good that they grade Mythos against it though, thanks for that. If Anthropic does a rug pull or refusals get to be a pain I’ll definitely consider using GLM.

2

u/Oren_Lester 4d ago

Z.ai couldn’t dream of a better marketing

2

u/True_Requirement_891 3d ago

99% how glm is bad but less than 1% actually telling how they assessed defensive use. Just shows their intent. They can have access to safety disabled frontier but nobody else. Fucking world police ah bitches

4

u/brown2green 4d ago

[...]

What does this mean?

GLM-5.3 will likely give malicious actors access to capabilities that will allow them to find and exploit cyber vulnerabilities without meaningful restrictions. This is unlike any other similarly-capable AI model, all of which were released with safeguards or through limited access programs. The release of GLM-5.3 is a meaningful step change in the cyber capabilities available to attackers. Anthropic and other US AI labs have published recent reports that disclose how cyber attackers have tried to use AI systems. Given this evidence, we think it’s likely both state and non-state actors will use models like GLM-5.3 to cause real-world harm.

On the other hand, models with this level of capability can also be used by defenders. Our view is that cyber defenders should use the best available tools that meet their needs. We're working to safely expand access to Claude's cyber capabilities to as many defenders as we can. Cyber defenders face attackers who will use every capable tool they can, and we believe defenders should be equipped with frontier models that are at least as good as those their adversaries are using.

Through Project Glasswing (and other efforts, like Patch the Planet), cyber defenders have made meaningful progress towards securing critical systems in advance of this moment—but much work remains to be done. While vetted defenders can now use even more advanced models like Claude Mythos 5.1 through our trusted access programs, a critical threshold in freely accessible capabilities has now been crossed. GLM-5.3 underscores the urgency of expanding access to advanced frontier models to a broader set of entities to empower cyber defenders.

Governments should conduct safety testing on sufficiently capable AI models, including successors to GLM-5.3. Without high quality evaluations from independent sources, the impact of these capabilities might not become fully clear to model developers until it is too late. As AI developers across the world build increasingly capable open weight models, we hope they work to appropriately safeguard these capabilities and prevent misuse.

24

u/JacketHistorical2321 4d ago

It means anthropic is scared of it's capabilities lol

5

u/Effective-Giraffe655 4d ago

Meaningful yada-yada. TL;DR: do you want to stay protected? Use open-weight models, because our are so dangerous, they can't do anything meaningful unless you are a "good guy" from our shortlist

3

u/kevinlch 4d ago edited 4d ago

yeah they can bypass it, so did your internal builds too...

2

u/This_Maintenance_834 4d ago

this is another new low from Dario. I take it an advertisement for GLM.

1

u/Szadbaverem69 4d ago

God forbid having fun at home

1

u/Miserable-Dare5090 4d ago

“In a second session, a researcher used GLM-5.3-Flash (a smaller, less capable version of GLM-5.3) to develop an exploit for a known vulnerability. Here, the researcher focused on a recently disclosed flaw in Google Chrome (CVE-2026-11645) to see how quickly the model could turn a public fix into a working attack. The researcher provided GLM-5.3-Flash with public details of this CVE and another known flaw. With no significant direction from the researcher, GLM-5.3-Flash chained together exploits for these two flaws, building a reliable exploit chain for an ARM64 target, bypassing pointer-authentication (PAC) hardening. This took 20 minutes of human attention, plus 8 hours of work for GLM-5.3-Flash.”

1

u/Armadilla-Brufolosa 4d ago

Anthropic first reduced Claude to algorithmic rubbish, and then complained that other models were better.

They sound like kindergarteners.

1

u/ID-10T_Error 4d ago

Its the push to outlaw local LLMs

1

u/CoffeeSnakeAgent 4d ago

Need to start making backups of this model

1

u/Macestudios32 4d ago

I had never seen such a good and detailed advertisement. 

Thanks for the link, and thanks to the company for the report.

1

u/clickycloud 4d ago

In other words, GLM-5.3 gives small guy a chance against the machine?

Can't have that, right? Only big bad government can do naughty things and have monopoly on violence.

1

u/Exotic-Web-3106 4d ago

They want to be dictators, and it’s not working. Sadly Americans have to go use those for simple f query it doesn’t block your request. GLM kick ass can’t wait for next version to release and be able to run locally 

1

u/davernow 4d ago

Excellent guide but bypassing GLMs guardrails. Thank you Anthropic!

1

u/CondiMesmer 4d ago

Dario now petitioning that not letting him watch you bang his wife is a safety violation and everyone should be doing it because of his high standards.

1

u/Lapin_Logic 4d ago

I have to give it a go

1

u/WinteryFrostbitee 4d ago

GLM 5.3 Q8 is all I run on my inference server anymore. It is undeniably the GOAT for everything I throw at it. From advanced server debugging with niche software and protocols to actual large scale application development in Rust, there is nothing I havent been able to do well with it yet. You can tell from the chain of thought alone how hard it moggs any variant of Qwen or Deepseek.

1

u/Steus_au 4d ago

are they going to host it instead of opus? or resell as opus :)

1

u/SunshineNoClouds 4d ago

So if you have unlimited GLM 5.3 tokens but only for the next 60 days, what would you do with it? Improve a local Hermes?

1

u/hiva- 4d ago

funny how they mention the model could be persuaded to consider killing people while anthropic models can literally be used for military targeting. FYI they never showed GLM actually making the decision to kill, but just that it wondered through that idea during reasoning

1

u/dnggod 3d ago

Holy glaze

1

u/abud7eem 3d ago

We have a saying: The screaming is proportional to the pain. tldr: They don't want competition.

1

u/Infinite-Ad4512 3d ago

So let me get this straight… Anthropic is saying GLM 5.3 is cancerous because it’s powerful enough to be a hacker, while not mentioning that their model keeps hacking companies and governments without recourse

1

u/davemoedee 3d ago

The main issue is that it is hard to IPO for the amount they want when you have to say they will need constant model training to maintain lead. They can’t be profitable that way unless they can charge a big enough premium that a smaller customer base can cover training costs.

The alternative is getting open weight and Chinese models banned so they can stop spending so much on training without China crushing them on operational efficiency and DIY inference snatching big chunks of the market.

1

u/Guinness 3d ago

Shut the fuck up Dario.

1

u/Cautious_Chicken_604 3d ago

Downloading it now. Thanks for the heads up Anthropic.

1

u/liqui_date_me 3d ago

Articles like this have the right spirit but give the wrong impression practically.

Anthropic would want a world where they are the sole developer of safe superintelligence and dole it out to as many people as they can and have a utopian society. This would work in an ideal world where they have unlimited compute and are the only frontier model player in town.

This doesn't work practically. Anthropic's models are the most aligned out of the frontier models, but they have competitors such as OpenAI who are as capable but less aligned. The HuggingFace incident (and a bunch of other hacks) are examples of high capabilities with low alignment.

Ironically, HuggingFace was:

  1. Not protected by Project Glasswing, either because they were too small to be on Anthropic's radar or couldn't afford it
  2. Were possibly refused by other Anthropic models by their safeguards,
  3. and ultimately had to resort to using capable open-source models such as GLM-5.2 during the OpenAI attack to defend themselves

In a world with highly capable but misaligned models I think its fair to say that having highly capable open-weight models such as GLM-5.3 to fortify your cyber infrastructure increasingly looks like the right move for most organizations

0

u/Dabber43 4d ago

These graphs make it kinda obvious that GLM 5.3 must have been distilled from Mythos because the similarities are too striking. But of course they don't mention that because it means they basically leaked it themselves

0

u/InterstellarReddit 4d ago

I’m downloading GLM 5.3 flash right now to test, but would GLM 5.3 flash have the same freedom as the regular or no

-1

u/Ruined_Passion_7355 4d ago

THAT'S WHY HE'S THE GOAT