A Rare Public Intervention

The cyber intelligence agencies of the Five Eyes alliance have warned that powerful artificial intelligence models capable of taking down governments and businesses are mere months away, issuing a rare joint statement urging leaders to "act now." For more context on this story, see our ongoing AI trends.

The public intervention by the signals agencies of Australia, the United States, the United Kingdom, New Zealand and Canada is unusual for a grouping that typically communicates through classified channels rather than press releases. It lands amid a global reckoning over how quickly frontier AI systems are gaining the ability to find and exploit vulnerabilities in the digital infrastructure that modern economies depend on.

'The Timeline Is Not Years, It Is Months'

According to the statement, reported by The Guardian, the agencies warned that while AI "would help us improve cyber defence over time, it also accelerates the speed, scale, and sophistication of cyber threats."

"Frontier AI models are anticipated to exceed current industry expectations, fundamentally transforming both offensive and defensive cyber capabilities," the Five Eyes agencies said. "The timeline is not years, it is months."

The agencies argued that rapid leaps in AI capability would lower the barriers for malicious actors while increasing the speed and complexity of attacks, concluding that "a whole-of-organisation and whole-of-society response is required."

"Cyber risk can no longer be treated as a purely technical issue," the statement continued. "This is a core business risk and leadership responsibility."

The warning reframes cybersecurity as a boardroom and cabinet-level concern rather than an IT department problem, and pushes executives and ministers to treat AI-driven threats with the same gravity as terrorism, state-sponsored hacking or critical-infrastructure sabotage.

Shadow of the Anthropic Export Ban

Although no AI models or companies are named in the statement, the warning lands against the backdrop of a decision earlier in June by the US government to block "foreign nationals" from using Anthropic's frontier models Fable 5 and Mythos 5, citing national security advice.

Mythos, released earlier in 2026, is a powerful model capable of detecting vulnerabilities in cyber systems, and is only available to vetted organizations over concerns it could be exploited for harm. Fable 5 is pitched as a more community-friendly counterpart to that harder-edged system.

The export restrictions, first covered in detail by AI Buzz Wire earlier this month, have sent shockwaves through allied nations that had been building their national AI strategies around access to US frontier models.

Allies Recalibrate

Olivia Shen, an expert in national security and AI at the University of Sydney's United States Studies Centre, said much of the world is focused on what happens next for Anthropic, but warned that more powerful models are likely on the horizon.

"I think we have to anticipate that the next Mythos or the next Fable is just around the corner," Shen said. "We can only see what's been released, but there could be other models being developed by the likes of China, or other states and other actors and companies, that are just as advanced."

Her remarks underscore a growing anxiety among US allies: that even as Washington restricts access to its most capable systems, rival states and private actors may be quietly closing the capability gap, leaving democracies to defend against threats they can no longer fully anticipate.

Australia's Light-Touch Bet

The warning also puts fresh pressure on countries that have pursued light-touch AI regulation. In March, the Albanese government signed Anthropic as the first company onto its national AI plan under a non-binding memorandum of understanding, under which companies agree to share details of AI progress with the government and "promote safety."

Australia's national plan deliberately promotes a hands-off approach to regulating the sector in a bid to capture economic and productivity benefits from the technology — a posture that the Five Eyes statement now implicitly challenges by framing cyber risk as an urgent, enterprise-wide responsibility.

What Comes Next

The joint statement stops short of recommending specific legislation, but its framing — cyber resilience as "integral to advancing business continuity, market confidence, and long-term value" — signals that intelligence agencies want AI-driven threats escalated to the highest levels of government and corporate governance.

For AI labs, the message is equally pointed. As frontier models grow more capable of probing and breaking digital systems, governments appear increasingly willing to use export controls, vetting regimes and public pressure to keep their most dangerous capabilities behind closed doors.

The question now is whether the "months, not years" timeline the Five Eyes agencies describe will force a faster regulatory response from legislatures around the world — or whether the breakneck pace of model development will outstrip any rulebook that governments can agree on. Either way, the rare decision of five allied intelligence agencies to speak publicly suggests they believe the window for preparation is closing fast.

---

Stay Ahead of AI

Get the latest AI news, analysis, and breakthroughs — all in one place.

Read more AI news →