Anthropic announced Claude Mythos, an AI model for finding security vulnerabilities, claiming breakthrough capabilities. However, testing revealed that small, cheap, open-source models could replicate much of Mythos's showcased analysis, including detecting flagship vulnerabilities. This suggests AI cybersecurity capability doesn't scale smoothly with model size, and the real value lies in the system architecture and security expertise, not just the model itself.