Discussion about this post

User's avatar
Paul Kassianik's avatar

Thank you for bringing attention to this!

Open-source models are the real danger for sure. Especially once they cross the "opus 4.5" capability threshold to maintain long-running agentic threads.

One thing that draws away from the "fully Claude Code" experience that attackers have with GLM-5.2 doesn't support image inputs. In my experience having image inputs is critical for generating any sort of visual artifacts like graphs or websites. So any nefarious activity that involves visual artifact creation is still limited (unless somebody finds a clever way to augment that with frontier models).

In regards to tasks that are primarily text-based, I'm surprised deepseek-v4 models did not take off with malicious actors as much as CC has. Deepseek-v4 models, especially with smart compaction, in my experience have been already very powerful. Perhaps it's the deployment factor -- deploying the big models is still difficult, but going through third-party API providers is risky due to monitoring.

No posts

Ready for more?