{
  "version": 1,
  "event_id": "evt_b5d41a5c8dc0f7ce",
  "url": "https://xiyu.news/events/evt_b5d41a5c8dc0f7ce/",
  "json": "https://xiyu.news/api/events/evt_b5d41a5c8dc0f7ce.json",
  "type": "security_incident",
  "status": "monitoring",
  "category": "technology",
  "title": {
    "zh": "Anthropic 推出 OSS Scanner 开源漏洞扫描服务并启动 Cyber Mission 计划",
    "en": "Launching an opt-in vulnerability-finding service for open-source software - Anthropic"
  },
  "current_state": {
    "zh": "Anthropic 推出 OSS Scanner，这是一项可选加入的服务，使用其最强大的前沿模型为开源项目生成漏洞报告，并已吸引包括 Nethermind 和 ZEUS 在内的加密项目申请。",
    "en": "Anthropic launched OSS Scanner, an opt-in service that generates vulnerability reports for open-source projects using its strongest frontier models, prompting applications from crypto projects including Nethermind and ZEUS."
  },
  "first_seen_at": "2026-10-08T23:27:51.641167+00:00",
  "last_updated_at": "2026-10-09T07:12:00.397479+00:00",
  "last_material_change_at": "2026-10-09T07:12:00.397479+00:00",
  "confidence": 0.75,
  "updates_count": 2,
  "sources_count": 3,
  "entities": [
    "ai-security",
    "anthropic",
    "claude",
    "launching",
    "open-source"
  ],
  "identifiers": [],
  "topics": [
    "ai-cybersecurity",
    "ai-security",
    "anthropic",
    "critical-infrastructure",
    "crypto-security",
    "developer-tools",
    "open-source",
    "open-source-security",
    "oss-scanner",
    "vulnerability-detection",
    "vulnerability-scanning"
  ],
  "updates": [
    {
      "update_id": "upd_6feb330545f263cd",
      "event_id": "evt_b5d41a5c8dc0f7ce",
      "occurred_at": "2026-10-08T19:00:00Z",
      "published_at": "2026-10-08T19:00:00Z",
      "first_seen_at": "2026-10-08T23:27:51.641167Z",
      "time_precision": "published",
      "update_type": "initial",
      "material_change": true,
      "title_zh": "推出面向开源软件的可选加入式漏洞发现服务",
      "title_en": "Launching an opt-in vulnerability-finding service for open-source software - Anthropic",
      "what_changed_zh": "Anthropic 宣布推出 OSS Scanner，这是一项可选加入（opt-in）的服务，使用其模型对开源软件代码库进行全面的定期安全扫描，并免费向相关项目提示潜在漏洞。\n\n据来源称，选择加入的开源项目可能更早收到潜在安全问题的提示；其代价则与 OSS Scanner 的运作方式有关。\n\n该服务对参与的开源项目免费，并使用 Anthropic 最强的模型进行定期扫描；参与方式为自愿加入而非自动纳入，公司还为该服务维护了一个公开代码库。",
      "what_changed_en": "Anthropic announced OSS Scanner, an opt-in service that uses its models to run thorough, periodic security scans of open-source software repositories and alert projects to potential vulnerabilities at no cost.\n\nAccording to the source, open-source projects that opt in could be alerted about possible security issues sooner; the trade-off is described as stemming from how OSS Scanner works.\n\nThe service is described as free to participating open-source projects and uses Anthropic's strongest models for periodic scanning; participation is opt-in rather than automatic, and the company maintains a public repository for the service.",
      "current_state_zh": "Anthropic 宣布推出 OSS Scanner，这是一项可选加入（opt-in）的服务，使用其模型对开源软件代码库进行全面的定期安全扫描，并免费向相关项目提示潜在漏洞。\n\n据来源称，选择加入的开源项目可能更早收到潜在安全问题的提示；其代价则与 OSS Scanner 的运作方式有关。\n\n该服务对参与的开源项目免费，并使用 Anthropic 最强的模型进行定期扫描；参与方式为自愿加入而非自动纳入，公司还为该服务维护了一个公开代码库。",
      "current_state_en": "Anthropic announced OSS Scanner, an opt-in service that uses its models to run thorough, periodic security scans of open-source software repositories and alert projects to potential vulnerabilities at no cost.\n\nAccording to the source, open-source projects that opt in could be alerted about possible security issues sooner; the trade-off is described as stemming from how OSS Scanner works.\n\nThe service is described as free to participating open-source projects and uses Anthropic's strongest models for periodic scanning; participation is opt-in rather than automatic, and the company maintains a public repository for the service.",
      "detailed_summary_zh": "Anthropic 宣布推出 OSS Scanner，这是一项可选加入（opt-in）的服务，使用其模型对开源软件代码库进行全面的定期安全扫描，并免费向相关项目提示潜在漏洞。\n\n据来源称，选择加入的开源项目可能更早收到潜在安全问题的提示；其代价则与 OSS Scanner 的运作方式有关。\n\n该服务对参与的开源项目免费，并使用 Anthropic 最强的模型进行定期扫描；参与方式为自愿加入而非自动纳入，公司还为该服务维护了一个公开代码库。",
      "detailed_summary_en": "Anthropic announced OSS Scanner, an opt-in service that uses its models to run thorough, periodic security scans of open-source software repositories and alert projects to potential vulnerabilities at no cost.\n\nAccording to the source, open-source projects that opt in could be alerted about possible security issues sooner; the trade-off is described as stemming from how OSS Scanner works.\n\nThe service is described as free to participating open-source projects and uses Anthropic's strongest models for periodic scanning; participation is opt-in rather than automatic, and the company maintains a public repository for the service.",
      "background_zh": "Anthropic 将 OSS Scanner 定位为扫描关键开源代码库安全漏洞的工具，并为项目提供可选的快速通道。随着开源维护者往往缺乏持续安全审查的资源，AI 辅助的漏洞检测已成为不断扩展的工具领域。",
      "background_en": "OSS Scanner is presented by Anthropic as a way to scan critical open-source repositories for security vulnerabilities, with an optional fast-track path for projects. AI-assisted vulnerability detection has been an expanding area of tooling, as open-source maintainers often lack the resources for continuous security review.",
      "community_discussion_zh": "",
      "community_discussion_en": "",
      "market_impact_zh": "该服务面向开源代码库，而这一范畴涵盖被广泛使用的加密基础设施，例如节点客户端、基础库和开发工具；若在其中发现漏洞，对相关项目及其用户而言属于运营安全层面的考量，而非直接的市场驱动因素。",
      "market_impact_en": "The service applies to open-source repositories, a category that includes widely used crypto infrastructure such as node clients, libraries and tooling; vulnerabilities surfaced there are an operational-security consideration for the affected projects and their users rather than a direct market driver.",
      "importance_score": 7.0,
      "references": [
        {
          "url": "https://red.anthropic.com/oss-scanner/",
          "title": "OSS Scanner"
        },
        {
          "url": "https://github.com/anthropics/oss-scanner",
          "title": "GitHub - anthropics/oss-scanner · GitHub"
        },
        {
          "url": "https://scalevise.com/resources/anthropic-oss-scanner-ai-open-source-security/",
          "title": "Anthropic OSS Scanner: AI Security Scans for Open Source"
        }
      ],
      "confidence": 0.75,
      "story_ids": [
        "rss:news.google.com_rss_search?q=site:anthropic.com+when:7d&hl=en-US&gl=US&ceid=US:en:b3bb93e0259ff9db"
      ],
      "sources": [
        {
          "url": "https://news.google.com/rss/articles/CBMikgFBVV95cUxQYlVFa0lLSzZRaDNqRXNLWjFxOE0xa3pZdkNrV2hkNHkxTDg3QnVRdFVVclpaUXVXTVZyekdxNkRGQTFGTWdmb1h2NGtLT3pOaUJuZG8wYldhVUFMbEdta2o0eERWaGlTalpISG9reWhCTm9VSmI1X0RFVDJ3Rk1zSDF6YmEwZWRiVnFHSS1DczNLZw?oc=5",
          "label": "Anthropic News",
          "source_type": "rss",
          "official": false
        }
      ]
    },
    {
      "update_id": "upd_78ca2838cc0a8661",
      "event_id": "evt_b5d41a5c8dc0f7ce",
      "occurred_at": "2026-10-09T05:54:02Z",
      "published_at": "2026-10-09T05:54:02Z",
      "first_seen_at": "2026-10-09T07:11:46.876357Z",
      "time_precision": "published",
      "update_type": "confirmation",
      "material_change": true,
      "title_zh": "Anthropic免费用Claude扫开源漏洞，已发现超2.9万处疑似漏洞",
      "title_en": "Anthropic免费用Claude扫开源漏洞，已发现超2.9万处疑似漏洞",
      "what_changed_zh": "Anthropic 推出 Cyber Mission 计划，包括一个由 Claude 驱动的免费开源漏洞扫描器以及一项关键基础设施防御倡议，并报告称在过去六个月中与 11 家公司合作，在开源软件中发现超过 29,000 个疑似漏洞。",
      "what_changed_en": "Anthropic launched the Cyber Mission program with a free Claude-powered open-source vulnerability scanner and a critical-infrastructure defense initiative, reporting more than 29,000 suspected vulnerabilities uncovered in open-source software over the past six months in partnership with 11 companies.",
      "current_state_zh": "Anthropic 推出 Cyber Mission 计划，包括一个由 Claude 驱动的免费开源漏洞扫描器以及一项关键基础设施防御倡议，并报告称在过去六个月中与 11 家公司合作，在开源软件中发现超过 29,000 个疑似漏洞。",
      "current_state_en": "Anthropic launched the Cyber Mission program with a free Claude-powered open-source vulnerability scanner and a critical-infrastructure defense initiative, reporting more than 29,000 suspected vulnerabilities uncovered in open-source software over the past six months in partnership with 11 companies.",
      "detailed_summary_zh": "Anthropic launched the Cyber Mission program with a free Claude-powered open-source vulnerability scanner and a critical-infrastructure defense initiative, reporting more than 29,000 suspected vulnerabilities uncovered in open-source software over the past six months in partnership with 11 companies.",
      "detailed_summary_en": "Anthropic launched the Cyber Mission program with a free Claude-powered open-source vulnerability scanner and a critical-infrastructure defense initiative, reporting more than 29,000 suspected vulnerabilities uncovered in open-source software over the past six months in partnership with 11 companies.",
      "background_zh": "",
      "background_en": "",
      "community_discussion_zh": "",
      "community_discussion_en": "",
      "market_impact_zh": "",
      "market_impact_en": "",
      "importance_score": 7.5,
      "references": [],
      "confidence": 0.75,
      "story_ids": [
        "telegram:theblockbeats:199635",
        "rss:cointelegraph.com_rss:63f16c1fae4361c3"
      ],
      "sources": [
        {
          "url": "https://m.theblockbeats.info/flash/370953?from=telegram",
          "label": "theblockbeats",
          "source_type": "telegram",
          "official": false
        },
        {
          "url": "https://cointelegraph.com/news/crypto-projects-apply-for-anthropics-new-frontier-ai-security-scanner?utm_source=rss_feed&utm_medium=rss&utm_campaign=rss_partner_inbound",
          "label": "Cointelegraph",
          "source_type": "rss",
          "official": false
        }
      ]
    }
  ]
}
