Chinese AI company Zhipu claims its new is a better bug-finder than Anthropic, OpenAI
- ID
- 14729
- Status
- summarized
- Published
- 17 Aug 2026, 8:51 AM
- Fetched
- 17 Aug 2026, 1:34 PM
- Provider
- The Register
- Category
- technology
- Original URL
- https://www.theregister.com/security/2026/08/17/chinese-ai-company-zhipu-claims-its-new-is-a-better-bug-finder-than-anthropic-openai/5288203
- Source URL
- https://www.theregister.com/headlines.atom
Summary
- Score
- 6.0
- Created
- 17 Aug 2026, 1:34 PM
- Tags
- Audience
- developersai_ml_learnersai_agent_users
What happened
Chinese AI company Zhipu launched GLM-5.3, claiming it outperforms Anthropic and OpenAI models on the CyberGym benchmark for vulnerability discovery, finding 2,436 vulnerabilities across 269 real-world projects including 1,097 medium-to-high severity issues, some dating back 40 years. The model performed worse than Western models on other security and coding benchmarks, narrowing but not closing the gap.
Why it matters
If GLM-5.3's bug-finding claims hold up under independent testing, developers shipping AI-assisted code review or security pipelines should evaluate whether a non-Western model belongs in their toolchain—especially for teams cost-sensitive about API spend or facing vendor lock-in to US providers. The benchmark is self-reported, so wait for third-party validation before committing.
Discussion angle
How much weight to give vendor-reported benchmarks like CyberGym when the same model underperforms on other coding tasks—and whether Malaysian teams should consider Chinese AI models given data sovereignty and geopolitical considerations