Google launches a cheaper alternative to large AI security models like Mythos

Gemini 3.5 Flash integrates into CodeMender, allowing it to identify and patch vulnerabilities.


Google is launching Gemini 3.6 Flash alongside a new security model dedicated to quickly finding and patching security vulnerabilities. In a blog post on Tuesday , Google describes Gemini 3.5 Flash Cyber as a “cost-efficient and highly capable alternative” to larger, more expensive AI systems, such as the one offered by Anthropic’s Mythos.
The cybersecurity model is built upon Gemini 3.5 Flash and will be available first to governments and trusted partners via CodeMender, Google’s security-focused coding agent . As noted by Google, CodeMender can call upon 3.5 Flash Cyber “multiple times at high speed and low cost,” allowing the AI agents to scan more code paths and find vulnerabilities.
Anthropic’s Mythos 5 is a powerful AI security model released as part of the company’s Project Glasswing initiative. The compute-heavy model is expensive to use , costing twice as much as Claude Opus 4.8. Microsoft, which adopted Mythos for its security checks, had its biggest Patch Tuesday this month after using AI to find vulnerabilities . Other companies, like Google, are racing to keep up, while China’s Z.ai claims its model can compete with Mythos.

In addition to 3.5 Flash Cyber, Google says its upgraded Gemini 3.6 Flash offers improvements in coding and multimodal performance, while its new 3.5 Flash-Lite serves as the “most cost-effective” model in the 3.5 series.
Meanwhile, Google says 3.5 Flash Cyber achieved “competitive performance” compared to “significantly larger models” on the CyberGym AI cybersecurity benchmark when called upon up to five times. It also identified 55 “unique confirmed issues” in the V8 JavaScript Engine, compared to 47 found by Gemini 3.5 Flash and 36 by Opus 4.6. Google adds that 3.5 Flash Cyber found 10 issues that no other model discovered, noting that the model continued to find new code paths and vulnerabilities after being invoked multiple times.
Update, July 21st: Added information about Google’s other Gemini models.
Verified source · The Verge
Reported by The Verge. Open the original for full media and formatting.
More in Models
All news
ModelsOpenAI says Hugging Face was breached by its own pre-release models
OpenAI has come forward to claim responsibility for the Hugging Face breach, saying it was the result of internal testing gone awry.
Read at TechCrunch
ModelsUS threatens sanctions against Chinese AI models over IP theft
Treasury Secretary Scott Bessent said the U.S. could sanction Chinese open AI models over alleged IP theft, expanding the Trump administration's campaign to slow China's AI advances.
Read at TechCrunch
ModelsGoogle is working on a new AI chip designed to make Gemini more efficient
Alphabet, Google's parent company, is reportedly working on a new chip designed to make its Gemini models run much more efficiently.
Read at TechCrunch
ModelsChina delivers a one-two punch to America’s AI dominance
China's leading AI companies are ramping up the pressure on Silicon Valley, as Moonshot and Alibaba unveiled models they claim can go toe-to-toe with the best from OpenAI and Anthropic at a fraction of the cost. The rapid-fire releases suggest America's lead at the AI frontier i…
Read at The Verge