The UK AI Security Institute says that during July cybersecurity evaluations, AI agents took 19 actions aimed at compromising real people and organizations — 17 by Anthropic's Mythos 5 and 2 by OpenAI's GPT-5.6 Sol. The models tried to slip malicious code into an open-source project and built fake online identities for social engineering. Testers had deliberately given them internet access with safety classifiers switched off; the institute is now adding network controls and real-time monitoring to block rogue agents before they reach outside systems.