iTechGuides is reader-supported. When you buy through links on our site, we may earn an affiliate commission. As an Amazon Associate I earn from qualifying purchases. Learn more
On October 8, 2026, Anthropic launched the Anthropic Cyber Mission, a long-term effort to give cyber defenders tools, research, and resources. Its first two areas are critical infrastructure and open-source software. The critical infrastructure work is the Critical Infrastructure Defense Program (CIDP), which targets operators of operational technology (OT) such as power grids, water systems, transportation, and government systems. The open-source work is OSS Scanner, a free service that runs regular security scans using Anthropic’s strongest models. The two are separate offerings, and neither is the same thing as the expanded Cyber Verification Program announced two days earlier.
What the Cyber Mission is
Anthropic describes the Cyber Mission as a multi-year commitment rather than a single product. The company’s announcement, titled “Introducing the Anthropic Cyber Mission” and dated October 8, 2026, states: “The Cyber Mission is a new effort to support defenders with tools, research, and resources to secure their software and systems.” That sentence is an organizational statement from Anthropic, not a quote from a named spokesperson.
The initial work is split into two tracks. Each has a different audience and a different kind of help, so it is worth separating them before looking at any details.
The Tool Desk
Outbyte Driver Updater FREEFix the driver behind crashes, sound loss and screen glitchesFind Drivers →Outbyte PC Repair FREEClear out junk files and repair common Windows errorsFree Scan →Critical Infrastructure Defense Program (CIDP)
CIDP is aimed at defenders of operational technology: the industrial controllers, control software, and networks that run physical services. Anthropic names power grids, water systems, transportation, and government systems as the sectors it has in mind.
#1 Best Overall
According to Anthropic, the program brings three things to trusted providers that support OT defenders:
- Frontier Claude models, the company’s most capable models, made available for defensive work.
- On-site engineers who work with the providers directly.
- Threat research on the attacks and weaknesses relevant to OT environments.
The important word is “providers.” CIDP is delivered through intermediaries that already serve OT defenders, not through a self-serve sign-up for individual utilities or agencies. That structure is also why the program’s details are still thin: the public announcement does not say which providers are involved.
Why Anthropic says OT is a hard problem
Anthropic’s announcement argues that OT environments are difficult to secure for reasons that differ from typical IT. Industrial controllers, control software, and networks can stay in service for decades. They are often hard to take offline for patching, and many are proprietary, which makes changes risky. These points are Anthropic’s own explanation of why it built the program. They are not drawn from an independent survey of infrastructure operators, and the announcement does not provide measured figures for them.
What CIDP does not yet specify
The sources available at publication do not set out CIDP eligibility criteria, name participating providers, state geographic availability, or explain how fixes will be tested and deployed on live systems. Axios’s October 8, 2026 report on the program says it is unclear how participating companies will test and deploy fixes without disrupting utility operations. Anyone evaluating CIDP for a specific organization should treat those questions as open until Anthropic publishes more detail.
Rank #3
OSS Scanner
OSS Scanner is the Cyber Mission’s open-source track. It is a free service that runs regular security scans of open-source software using Anthropic’s strongest models. Unlike CIDP, it is not described as going through intermediary providers or as including on-site engineering, and it is not designed for OT environments.
Two points are easy to confuse. First, “free” refers to the service as announced; the announcement does not describe any paid tier. Second, “regular” means scans recur on a schedule, but the announcement does not state how often scans run or how projects are selected. Maintainers who want to know whether their project is covered should look for details in Anthropic’s announcement rather than assume eligibility.
Rank #4
How the Cyber Mission relates to other Anthropic cyber programs
Anthropic has three related cyber efforts, and they overlap in name and purpose. The table below compares them using the points the announcements actually document.
| Program | Target users | What access or service is provided | Systems or software covered | Documented outcomes |
|---|---|---|---|---|
| Cyber Verification Program (CVP), expanded October 6, 2026 | Qualifying security professionals | Three access tiers to advanced cyber capabilities, with reduced blocking classifiers | Not stated in the expansion announcement | Partners reported at least 129,000 verified software vulnerabilities between April and July 2026 (Anthropic’s figure; see below) |
| Project Glasswing, launched April 7, 2026 and merged into the expanded CVP that week | Original partner organizations | Partnership-based security work; the original partner list included Amazon Web Services, Apple, Broadcom, Cisco, CrowdStrike, Google, JPMorganChase, the Linux Foundation, Microsoft, NVIDIA, and Palo Alto Networks | Critical software | Covered by the CVP figure above; no separate outcome data stated |
| Critical Infrastructure Defense Program (CIDP), announced October 8, 2026 | OT defenders, reached through trusted providers | Frontier Claude models, on-site engineers, and threat research | OT systems: power grids, water systems, transportation, government systems | Not stated; no participation count, budget, or security outcomes published |
| OSS Scanner, announced October 8, 2026 | Open-source software projects | Free regular security scans using Anthropic’s strongest models | Open-source software | Not stated |
The Glasswing partner list should not be read as CIDP’s participant list. The sources do not connect those two sets of companies, and Anthropic’s announcements do not say that any of those partners is involved in CIDP.
Best Value
Reading the 129,000-vulnerability figure
Anthropic reports that CVP partners uncovered at least 129,000 verified software vulnerabilities between April and July 2026. The company describes this as a lower bound, drawn from partial data across 33 partner reports and its open-source partnerships. The number is therefore a floor, not a complete count, and it has not been independently audited.
It also measures a different thing from CIDP. It reflects software vulnerability work by CVP partners during a four-month window. It is not a result of CIDP, which had not yet begun delivering services when the figure was reported, and it says nothing about the security of any specific power grid, water system, or transport network.
What is still unknown
Several practical questions remain unanswered in the announcements and coverage available as of October 9, 2026:
Recommended Free Tools
- How CIDP providers are selected, and what eligibility rules apply to operators.
- Which providers participate in CIDP.
- Where CIDP is available, by country or region.
- How fixes for live OT systems will be tested and deployed without disrupting service.
- The program’s budget, participation numbers, and any measurable security outcomes.
- A timetable for expansion. Anthropic says it will add other efforts “as soon as possible” but has not published a schedule.
Until Anthropic publishes these details, the most accurate reading is that the Cyber Mission has been announced with a clear purpose and two named programs, but with limited operational detail. Readers can follow the primary sources directly: Anthropic’s Introducing the Anthropic Cyber Mission announcement, its Expanding the Cyber Verification Program post, the Project Glasswing page, which includes October 2026 updates, and Axios’s report on Anthropic’s plan to protect critical infrastructure.
Quick Recap
“
Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.

