Introducing Project Glasswing: Giving Maintainers Advanced AI to Secure the World’s Code
Introducing Project Glasswing: Giving Maintainers Advanced AI to Secure the World’s Code
Publish Date: 2026-04-07 03:00:00
Source Domain: www.linuxfoundation.org
In the late fall of 2025, artificial intelligence models made a big leap in coding ability. Since then, we have been hearing about a darker side of this breakthrough — how the new generation of AI models are also astoundingly good at identifying previously undiscovered software vulnerabilities. These discoveries are impacting some of the most security-hardened systems in the world. What’s more, the AI systems making these discoveries demonstrate incredible sophistication, often chaining together multiple vulnerabilities to generate more critical risks.
Software in the crosshairs
Because software powers everything in the world, attackers have long targeted code, both proprietary and open source, as a way to leverage impact. Open source is the dominant form of software consumed in enterprise today, making it the world’s biggest target. This is especially true for the most widely used software projects that underpin a wide swathe of our economy, our society, and other aspects of our lives. From hospitals to banks to telecommunications and transportation providers, open source is the essential ingredient in their technology stacks.
At the same time, open source software maintainers have never faced more stress. Higher velocity of pull requests and security bug reports (many of them AI-generated), a greater volume of cyberattacks, and increasingly sophisticated campaigns to compromise supply chains combine to make maintainers’ lives harder. Add the looming threat of a tidal wave of AI-generated zero-day vulnerabilities, and we face a potentially catastrophic situation.
Addressing the maintainers’ dilemma with Project Glasswing
This is why Project Glasswing matters. Project Glasswing brings together Amazon Web Services, Apple, Broadcom, Cisco, CrowdStrike, Google, JPMorgan Chase, the Linux Foundation, Microsoft, NVIDIA, and Palo Alto Networks to put a new frontier AI model — Claude Mythos Preview — to work for defensive security purposes. Anthropic is…