US Government Export Control Directive Suspends Fable 5 and Mythos 5 for Foreign Nationals · history
Version 24
2026-07-01 02:40 UTC · 444 items
What
The US Commerce Department lifted export controls on Claude Fable 5 and Mythos 5 on June 30, 2026, ending an 18-day global suspension [13][14][15]. Commerce Secretary Lutnick sent a formal letter confirming the lift [14], and Anthropic announced access restoration would begin July 1 [13]. The suspension originated from a June 12 directive citing a jailbreak demonstrated by Amazon researchers, resulted in a Pentagon supply-chain designation that routed procurement to OpenAI [10][11], and drew the first federal lawsuit from Legion LegalTech [18]. Zvi Mowshowitz added that a Supreme Court ruling in Slaughter v. Trump, overturning Humphrey's Executor 6-3, makes creating an independent federal AI regulatory body legally impossible under current doctrine [17].
Why it matters
The 18-day arc — directive to global outage to formal lift — demonstrates the government can impose and withdraw access to commercially deployed AI models without a stable technical or legal standard. The competitive damage (OpenAI's Pentagon contract), the BIS precedent, the Alibaba cloning record, and Legion LegalTech's lawsuit all persist even as the models return.
Open questions
Does Lutnick's lift letter formally rescind the BIS export licensing requirement and the Pentagon's supply-chain designation, or does it address only the access restriction while leaving the formal designations in place [14][5][19]?
What happens to Legion LegalTech's federal lawsuit now that the controls are lifted — does the case proceed on a record of constitutional harm, or does restoration moot the action [18][17]?
Zvi reports CAISI was under a stop-work order throughout the suspension [17] — does the White House now have in-house AI technical capacity to evaluate future model-risk claims, or will ad hoc reliance on industry briefings continue?
OpenAI secured a Pentagon contract within hours of the Anthropic ban [10][11] — has the DoD's supply-chain designation been formally withdrawn, and does OpenAI's deal remain in place now that Anthropic's models are restored?
Narrative
On June 12, 2026, the US Commerce Department directed Anthropic to suspend Claude Fable 5 and Mythos 5 for all foreign nationals, citing a jailbreak that bypassed classifier-based safeguards for cybersecurity, chemistry, and biology prompts [1]. The jailbreak was demonstrated by Amazon researchers, and Amazon CEO Andy Jassy personally briefed senior Trump administration officials before the government action — against a company in which Amazon holds a major investment [2][3]. Unable to restrict access by nationality on short notice, Anthropic disabled both models globally on June 13. Commerce Secretary Lutnick, told the directive meant the models would have to go offline, replied: 'That's the point' [4]. By June 17 he had sent a formal BIS letter placing both models under export licensing requirements [5].
The technical justification was disputed from the start. Katie Moussouris, the only outside expert given access to the government's report, assessed the triggering scenario — researchers used engineered code with deliberately planted fake vulnerabilities — as 'the model working as intended' for cyberdefense [6][4]. Zvi Mowshowitz argued the stated reinstatement path was technically impossible, since vulnerability identification and secure coding cannot be separated [7], and that NSA red-team results cited as justification involved authorized analysts on air-gapped systems rather than external attackers — with the NSA itself losing Mythos access as a collateral consequence [8]. On June 20, Trump stated he no longer views Anthropic as a national security threat [9], yet the administration simultaneously ordered military contractors and federal agencies to cease business with Anthropic entirely, with OpenAI securing a Pentagon deal within hours [10][11]. Anthropic meanwhile disclosed that Alibaba and Alibaba Qwen generated 28.8 million exchanges with Claude through approximately 25,000 fraudulent accounts between April 22 and June 5, the largest model-cloning campaign Anthropic has measured — placing Anthropic in the position of contesting the specific triggering incident while providing evidence of Chinese capability extraction at scale [12].
On June 30, the Commerce Department formally lifted export controls on both models [13][14][15]. Lutnick sent a formal letter confirming the lift, and Anthropic announced access restoration would begin July 1. The lift came after Mythos had already been partially restored — Lutnick had authorized access for more than 100 institutions on June 27 [16] — while Fable 5 remained fully offline. Zvi Mowshowitz's June 30 roundup added further context: CAISI, the White House's in-house AI technical unit, was under a stop-work order throughout the suspension period [17], and a Supreme Court ruling in Slaughter v. Trump overturning Humphrey's Executor forecloses creating an independent federal AI regulatory body under current doctrine [17]. Legion LegalTech's federal lawsuit challenging the directive, filed June 24, remains pending [18].
Timeline
- 2026-04-22: Alibaba and Alibaba Qwen begin a model-cloning campaign against Claude, ultimately generating 28.8 million exchanges via approximately 25,000 fraudulent accounts through June 5. [12]
- 2026-06-10: Anthropic sends a confidential letter to Senators Tim Scott and Elizabeth Warren disclosing the Alibaba cloning campaign, the day before a Senate AI hearing. [12]
- 2026-06-12: Amazon researchers demonstrate a jailbreak on Fable 5; Jassy personally briefs senior Trump administration officials in conversations that directly preceded the government action. [2][3][28]
- 2026-06-12: Commerce Department issues export control directive for all foreign nationals; Lutnick tells Amodei 'That's the point' when informed both models would have to go offline. [20][29][1][4]
- 2026-06-13: Anthropic disables Fable 5 and Mythos 5 globally after determining nationality-based restriction was not achievable on short notice. [1]
- 2026-06-16: Moussouris assesses the triggering behavior as 'the model working as intended' for cyberdefense; Luta Security publishes a formal argument that the controls harm US cyber defense. [6][22]
- 2026-06-17: Lutnick sends a formal BIS letter to Amodei requiring an export license before international deployment. [5][4]
- 2026-06-20: Trump states he no longer views Anthropic as a national security threat, with no formal policy change announced. [9][30]
- 2026-06-21: Pentagon labels Anthropic a 'supply chain risk,' adding a DoD procurement designation alongside the BIS export licensing controls. [19]
- 2026-06-24: Legion LegalTech files a federal lawsuit against the US government — the first formal judicial challenge to the directive. [18][25][26]
- 2026-06-24: Zvi reports the NSA lost its own Mythos access; NSA red-team results cited as justification involved authorized insider access on air-gapped systems, not external attack. [8]
- 2026-06-25: Anthropic publicly calls for punishment of Alibaba for the 28.8-million-exchange cloning campaign. [12]
- 2026-06-26: Trump orders military contractors and federal agencies to cease business with Anthropic; OpenAI secures a Pentagon deal within hours. [21][11]
- 2026-06-27: Lutnick authorizes Mythos 5 for more than 100 approved institutions; Anthropic confirms Mythos redeployment to US critical infrastructure organizations. [16][31]
- 2026-06-29: Zvi Mowshowitz calls a WSJ report claiming China's GLM-5.2 matched Mythos 'obvious nonsense,' arguing Mythos's autonomous large-scale vulnerability identification without being pointed at specific targets remains unmatched. [24]
- 2026-06-30: Commerce Department lifts export controls on both Fable 5 and Mythos 5; Lutnick sends a formal letter confirming the lift; Anthropic announces access restoration begins July 1. [13][14][15]
Perspectives
Anthropic
Complied under legal obligation, contested the directive as technically disproportionate, called for punishment of Alibaba for the largest model-cloning campaign it has measured, and confirmed model restoration begins July 1.
Evolution: Models restored after 18 days; Anthropic's posture has shifted from crisis management to reestablishing normal operations, without any public acknowledgment of a technical fix.
Trump / White House
Trump stated June 20 he no longer views Anthropic as a national security threat, yet subsequently ordered military contractors and agencies to stop using Anthropic — a gap the June 30 lift partially closes without public explanation.
Evolution: The formal lift resolves the operational contradiction somewhat, but no administration statement has explained why controls were imposed, maintained, or lifted.
Commerce Department / Secretary Lutnick
Moved from informal directive to formal BIS licensing to selective Mythos restoration to full lift — each step by letter or statement rather than formal rulemaking.
Evolution: The June 30 formal lift letter completes the arc; Lutnick drove each stage of both the restriction and the unwinding.
Pentagon / Department of Defense
Labeled Anthropic a 'supply chain risk' on June 21 and routed procurement to OpenAI; whether the DoD designation has been formally withdrawn alongside the Commerce lift is unconfirmed.
Evolution: The Commerce lift does not automatically rescind the Pentagon's supply-chain designation — their formal status remains unresolved.
Luta Security / Katie Moussouris
The triggering scenario used deliberately planted fake CVEs on engineered code and is 'the model working as intended' for cyberdefense; the controls harmed US cyber defense.
Evolution: Consistent; the controls were lifted without the government ever publicly addressing this counter-assessment.
Zvi Mowshowitz
The directive was improvised and technically impossible to satisfy; NSA red-team results were mischaracterized; China has not matched Mythos's core autonomous capability; CAISI's stop-work order left the White House without AI technical expertise; and the SCOTUS ruling on Humphrey's Executor forecloses independent AI regulation.
Evolution: Added CAISI stop-work and the SCOTUS ruling as new structural constraints on AI governance, extending his critique beyond this specific episode.
Legion LegalTech
Filed a federal lawsuit June 24 arguing the shutdown violated its rights as a US AI-native firm whose core workflows depended on Fable 5; the suit may continue on constitutional harm grounds even with controls lifted.
Evolution: No government response on record; the lift of controls may affect standing or mootness arguments.
Tensions
- Anthropic, Moussouris, and Luta Security assess the triggering behavior as standard defensive security work on engineered fake code; the government treated it as justifying full model suspension and BIS licensing, and never publicly addressed the expert counter-assessment — even when lifting the controls. [6][22][4][20][5][14]
- Trump publicly stated he no longer views Anthropic as a national security threat, yet ordered military contractors and agencies to stop using Anthropic days later; the June 30 lift partially closes the gap but no administration statement reconciles the sequence. [9][21][11][14]
- The stated reinstatement path required fixing the jailbreak; Zvi argues this is technically impossible and the actual resolution was political accommodation, with no technical bar ever verified or announced. [4][7][27][17]
- Anthropic contests the export controls as technically disproportionate while simultaneously providing evidence that Alibaba extracted Claude's capabilities at scale via 28.8 million fraudulent exchanges — evidence that supports the government's broader China-threat framing even if not the specific triggering incident. [12][20][6][5]
- The Wall Street Journal reported China's GLM-5.2 matched Mythos in cybersecurity; Zvi argues GLM-5.2 only replicates Mythos in narrow directed scenarios and Mythos's autonomous large-scale vulnerability identification remains unmatched. [24]
Sources
- [1] Anthropic shuts down Fable, Mythos models following Trump admin directive — Ars Technica AI (2026-06-13)
- [2] Reuters: Amazon’s Andy Jassy was among the people who warned senior Trump officials this week about security concerns ar… — Rohan Paul Twitter (2026-06-13)
- [3] Amazon CEO’s Talks With U.S. Officials Triggered Crackdown on Anthropic Models - WSJ — reactive:fable-mythos-export-control
- [4] The Once And Future Fable #3: Fix This Code — Zvi's AI Roundups (2026-06-17)
- [5] Full Letter From Commerce Secretary Howard Lutnick to Dario Amodei — Rohan Paul Twitter (2026-06-17)
- [6] Quoting Matteo Wong, The Atlantic — Simon Willison (2026-06-16)
- [7] AI #173: AI Pauses — Zvi's AI Roundups (2026-06-18)
- [8] The Once And Future Fable #4 — Zvi's AI Roundups (2026-06-24)
- [9] Not anymore: Trump on whether he sees Anthropic threatening national security — Rohan Paul Twitter (2026-06-20)
- [10] San Francisco-based OpenAI strikes deal with Pentagon hours after President Donald Trump's administration bans Anthropic - ABC7 San Francisco — reactive:fable-mythos-export-control
- [11] Trump administration orders military contractors and federal agencies to cease business with Anthropic | CNN Business — reactive:fable-mythos-export-control
- [12] Anthropic says Alibaba must be punished for largest Claude cloning attack — Ars Technica AI (2026-06-25)
- [13] Quoting Anthropic — Simon Willison (2026-06-30)
- [14] The letter from US Commerce Secretary Howard Lutnick about lifting the export control restriction on Anthropic Fable 5. … — Rohan Paul Twitter (2026-07-01)
- [15] FINALLY.. Claude Fable 5 and Mythos 5 are coming back. 🔥 https://t.co/6VdnFSvLRP https://t.co/OFVd1hOESd — Rohan Paul Twitter (2026-06-30)
- [16] The U.S. just reopened Anthropic’s Claude Mythos 5 for more than 100 approved institutions. — Rohan Paul Twitter (2026-06-27)
- [17] The Once And Future Fable #5 — Zvi's AI Roundups (2026-06-30)
- [18] Reuters: A US legal tech company just sued the US federal government over the order of forced Anthropic's model shut dow… — Rohan Paul Twitter (2026-06-24)
- [19] Pentagon says it is labeling AI company SF-based Anthropic a supply chain risk 'effective immediately' - ABC7 San Francisco — reactive:fable-mythos-export-control
- [20] Statement on the US government directive to suspend access to Fable 5 and Mythos 5 — Anthropic News (2026-06-12)
- [21] OpenAI strikes deal with Pentagon after Trump orders government to stop using Anthropic — reactive:fable-mythos-export-control
- [22] The Fable 5 Export Controls Harm US Cyber Defense - Luta Security — reactive:fable-mythos-export-control
- [23] American Government Takes Down Claude Fable — Zvi's AI Roundups (2026-06-13)
- [24] WSJ Article Claiming China Has Matched Anthropic Is Obvious Nonsense — Zvi's AI Roundups (2026-06-29)
- [25] Legion LegalTech sues US over Anthropic Fable 5 and Mythos 5 ... — reactive:fable-mythos-export-control
- [26] Legal Tech Co. Sues US Over Anthropic AI Shutdown Order - Law360 Pulse — reactive:fable-mythos-export-control
- [27] Perfect immunity from jailbreak is not possible even for the strongest of LLMs. — Rohan Paul Twitter (2026-06-19)
- [28] Amazon CEO reportedly raised Anthropic model concerns before ... — reactive:fable-mythos-export-control
- [29] Scoop: Trump admin blocks foreign access to Anthropic's most powerful AI — reactive:fable-mythos-export-control
- [30] Trump just told the world that a week ago he considered Anthropic a national security threat (Save this). — Milk Road AI Twitter (2026-06-19)
- [31] Anthropic just confirmed Mythos 5 is being redeployed to US organizations defending critical infrastructure. — reactive:fable-mythos-export-control (2026-06-27)