Kunstvolles Marketing
Die Tagesschau veröffentlicht bodenständige Empfehlungen zur Cybersicherheit –
Besonders häufige Einfallstore sind unsichere Passwörter und fehlende Mehrfaktor-Authentifizierung. Hinzu kommen Phishing-Links, die durch KI immer glaubwürdiger wirken, sowie Social Engineering, bei dem Täter mit psychologischen Tricks gezielt das Vertrauen und die Gutgläubigkeit oft von älteren Menschen ausnutzen.
Wer seine Cybersicherheit verbessern will, sollte deshalb starke Passwörter nutzen, zusätzliche Anmeldeschritte aktivieren und bei Nachrichten, Links und Dateianhängen besonders vorsichtig sein.
– die erstaunlicherweise kein Wort zum Thema patch management enthalten, obwohl durch die bevorstehende Veröffentlichung eines besonders findigen LLM eigentlich die zero-day apocalypse ins Haus steht.
Vermutlich hat die Tagesschau-Redaktion eine schwedische Quelle berücksichtigt:
Back in April 2026 Anthropic caused a lot of media noise when they concluded that their new AI model Mythos is dangerously good at finding security flaws in source code. Apparently Mythos was so good at this that Anthropic would not release this model to the public yet but instead trickle it out to a selected few companies for a while to allow a few good ones(?) to get a head start and fix the most pressing problems first, before the general populace would get their hands on it.
The whole world seemed to lose its marbles. Is this the end of the world as we know it? An amazingly successful marketing stunt for sure. [...]
It was with great anticipation we received the first source code analysis report generated with Mythos. Another chance for us to find areas to improve and bugs to fix. To make an even better curl. [...]
The report concluded it found five
Confirmed security vulnerabilities. I think using the term confirmed is a little amusing when the AI says it confidently by itself. Yes, the AI thinks they are confirmed, but the curl security team has a slightly different take. [...]The single confirmed vulnerability is going to end up a severity low CVE planned to get published in sync with our pending next curl release 8.21.0 in late June. The flaw is not going to make anyone grasp for breath.
(/via Davi Ottenheimer)
Andererseits ist es egal, was deutsche Redaktionen und undiplomatische OSS-Entwicklerinnen schreiben, solange das Marketing bei zahlungskräftigen Kundinnen anschlägt.