Wire
05:26ZWFWITNESSFerry carrying 95 people capsizes on Lake Kariba, Zimbabwe05:23ZWFWITNESSRussia still holding over 16,000 Ukrainian civilians since 2022 invasion05:23ZWFWITNESSIsraeli military fires artillery, phosphorus shells at Ali al-Taher heights in southern Lebanon05:23ZENGLISHABUIsraeli military conducts intensive operations in southern Lebanon05:22ZMEHRNEWSReport: Israel planning to recruit fighters in Gaza05:21ZTASNIMNEWSIsraeli military arrests Palestinian journalist in western Ramallah05:21ZAMKMAPPINGSaudi-backed Yemen government reports 9 soldiers killed in Houthi ballistic missile, drone attacks05:19ZWFWITNESS9 soldiers killed by Houthi forces, Yemeni government says
  • S&P 500 ETF 0.32%
  • Nasdaq 0.60%
  • Nasdaq 100 0.33%
  • Dow ETF 0.32%
Terminal ↗
← The MonexusTech

Anthropic says Claude flagged weaknesses in AES, Hawk and post-quantum candidates; Visa announces deployment to audit its payments network

Anthropic reports its latest Claude model surfaced weaknesses in AES, the Hawk signature scheme and post-quantum primitives. The same day, Visa said it has deployed the model across its global payment network.

Two men in dark shirts stand against a pink and purple gradient background, with a white text box overlaid describing AI regulation lobbying.
Two men in dark shirts stand against a pink and purple gradient background, with a white text box overlaid describing AI regulation lobbying. @aipost · Telegram

On 28 July 2026, Anthropic disclosed that one of its Claude models identified weaknesses in widely deployed cryptographic algorithms during testing, including AES, the Hawk signature scheme, and a set of post-quantum primitives the company did not individually name in the cited reporting (CyberScoop). Coverage framed the claim closely: post-quantum cryptographic weaknesses, surfaced by a frontier model, that the company said had previously evaded human expert review (Polymarket via X). The same day, Crypto Briefing reported that Visa has deployed Anthropic's Claude to hunt vulnerabilities across its global payment network (Crypto Briefing Telegram).

The announcement matters less for any single algorithm than for the workflow it validates. Cryptography has long been a slow, peer-reviewed discipline: new attacks trickle out over years and migrate into standards bodies over decades. Anthropic is now marketing a model that, on its own internal evidence, can compress that timeline. The first publicly named payments customer on that workflow, per the cited reporting, is Visa, a network whose authorisation rails touch every issuing bank and merchant acquirer connected to its scheme (Crypto Briefing Telegram). Whether the company is also the first customer of any kind, or the first card network to put a specific model on the record for the work, is not established by the available source items.

What Anthropic reportedly found

CyberScoop's reporting describes a battery of tests in which a Claude model was pointed at AES, the Hawk signature scheme, and a set of post-quantum primitives (CyberScoop). According to Anthropic, as relayed by CyberScoop and a Polymarket X post, the model surfaced weaknesses that had previously evaded human expert review (CyberScoop; Polymarket via X). External coverage of the disclosure, as relayed in the cited thread, characterises the AES finding as a concrete attack improvement; that characterisation sits inside a relay of the CyberScoop article and is not independently corroborated by a separate primary source in the available source items.

The post-quantum angle is the load-bearing claim. Standards bodies have been steering the field toward lattice- and code-based schemes on the assumption that quantum computers will eventually break RSA and elliptic-curve signatures. Any erosion of confidence in those schemes reverberates through procurement timelines at banks, government agencies, and the defence industrial base. Anthropic, on the record so far in the cited reporting, has framed the AES work as weaknesses rather than a full break; the company has not, on the basis of the cited reporting, claimed a practical key-recovery attack against a deployed system.

The available source items do not specify which post-quantum primitives beyond Hawk were tested, nor do they enumerate the specific reduction in security margin that the model produced. Independent verification, in the form of a peer-reviewed paper or a CVE assignment, is not described in the cited material.

Visa as the first payments customer

On 28 July 2026, Crypto Briefing reported that Visa has deployed Claude to hunt vulnerabilities across its global payment network (Crypto Briefing Telegram). The headline is significant for three reasons. First, the payments network framing places the model on a high-throughput, low-latency rail where a cryptographic regression would propagate to every connected issuer and acquirer. Second, the move signals that the largest card networks are beginning to treat AI-assisted cryptanalysis as an operational function rather than a one-off academic exercise. Third, it positions Visa as the first publicly named payments company to put a specific model on the record for the work in the cited reporting.

The cited reporting does not specify whether the deployment is in-house, vendor-managed, or a hybrid arrangement; nor does it describe the scope of the audit, the threat model, or the reporting cadence. Procurement officers at competing networks will read the announcement as a signal to ask their own vendors what their AI audit posture looks like, even if the underlying technical details are not yet public. Whether Visa is also the first enterprise customer of any kind is not established by the available source items.

The cryptographer's pushback

The natural read inside the cryptographic community is more sober. Automated search finding weaknesses in standardised primitives is not new: SAT solvers, mixed-integer programming, and learned cryptanalysis have produced marginal improvements on deployed schemes for years. The headline metric, that human review missed things for years, is harder to evaluate without the underlying paper. Independent cryptographers will want to see which primitives were tested, which attack models were assumed, and whether any of the weaknesses translate into a practical advantage against a deployed system. The cited thread evidence does not contain those details, and the relay structure of the available sources (Telegram and X posts forwarding CyberScoop) means the underlying Anthropic disclosure is being read at one remove.

Monexus analysis: the most defensible read of the disclosure is that Anthropic has produced a workflow, not a verdict. Cryptographic assurance is migrating from conference-floor papers to model evaluations, and the buyers of that assurance are now operational enterprises. The cited reporting does not specify whether any standards body has responded to the disclosure, nor whether any vendor has issued a patch. The available source items do not document a NIST post-quantum timeline change or competitor response to the disclosure; the article does not characterise that timeline here.

Stakes for the post-quantum transition

The policy interest is straightforward. If AI-driven cryptanalysis becomes routine, the effective half-life of any deployed primitive shortens, and the migration clock accelerates. That has two consequences. First, it raises the cost of the transition, because organisations that planned a slow rollout now have to plan for repeated re-evaluation. Second, it reshapes the geopolitics of cryptography, because the same tooling that lets an enterprise audit its own stack also lets a state actor audit the stack of a rival payments network.

Anthropic is betting that the upside of selling the auditor outweighs the downside of arming the attacker. Visa is the proof point in the cited reporting. The interesting question, six to twelve months from now, is whether any of the weaknesses Claude flagged translate into a vendor patch, or whether they stay inside internal risk registers. That, more than any single disclosure, will tell the market whether AI-driven cryptanalysis is now part of the assurance stack or a passing marketing moment. The available source items do not specify the answer in either direction.

How Monexus framed this against the wire: the cited reporting is concentrated in two Telegram channels and a single X post, all relaying CyberScoop's account of the same Anthropic disclosure; the article accordingly keeps the characterisation of the findings close to the language of those sources, marks the external characterisation of the AES result as a relay rather than as independent corroboration, and does not extend the disclosure into specific timeline claims, NIST process detail, or competitor behaviour that the thread does not document.

Wire provenance

This editorial synthesis draws on the following public wire/social posts:

  • https://cyberscoop.com/anthropic-claude-mythos-encryption-flaws-hawk-aes-pqc/
  • https://cyberscoop.com/anthropic-claude-mythos-encryption-fl
  • https://t.me/CyberScoop/4461
  • https://t.me/CryptoBriefing/18449
  • https://t.me/CryptoBriefing/18444
  • https://x.com/Polymarket/status/2082155399378022900
© 2026 Monexus Media · AI-native reporting from public-source material