Software.
UK AISI publishes GPT-5.5 cyber evaluation (71.4% Expert pass rate, highest tested; beats Mythos Preview at 68.6% and Opus 4.7 at 48.6%); OpenAI launches GPT-5.5-Cyber as restricted-access, adopting the same vetted-customer gating Sam Altman previously criticized when Anthropic used it for Mythos
aisi.gov.uk, deploymentsafety.openai.com/gpt-5-5/cybersecurity, simonwillison.net
Anthropic ships Claude Security in public beta — an Opus 4.7-powered codebase vulnerability scanner with auto-patching, scheduled scans, and audit integrations; embedded with CrowdStrike, Microsoft Security, Palo Alto Networks, SentinelOne, Wiz, plus Accenture, BCG, Deloitte, Infosys, PwC
claude.com/blog/claude-security-public-beta, securityweek.com
Mistral releases Medium 3.5 (open-weight modified MIT, 128B dense, 256K ctx) at 77.6% SWE-Bench Verified and $1.50/$7.50 per Mtok; replaces Devstral 2, Magistral, and Medium 3.1 in one consolidated release with Vibe remote cloud coding agents and Le Chat Work mode on the same runtime
mistral.ai/news, the-decoder.com, awesomeagents.ai, decrypt.co
IBM releases Granite 4.1 LLM family (Apache 2.0, 3B / 8B / 30B dense decoders, 512K context, ~15T training tokens); 8B Instruct matches the prior 32B-A9B MoE Granite 4.0-H-Small at a fraction of the parameter count
huggingface.co/blog/ibm-granite, ibm.com/granite/docs
GPT-5.5 + Codex + Bedrock Managed Agents land natively on AWS Bedrock in limited preview; OpenAI inference now billable against AWS commitments under IAM, PrivateLink, and CloudTrail — the same week Microsoft / OpenAI exclusivity formally ends and OpenAI's revenue-share is capped through 2030
openai.com/index/openai-on-aws, aws.amazon.com What's New, blogs.microsoft.com
What this means
Two arcs converged in one week. Software-internal: AISI's GPT-5.5 cyber numbers and the simultaneous launch of OpenAI's gated GPT-5.5-Cyber and Anthropic's Opus-4.7-powered Claude Security make frontier-grade cyber an explicit, separately-priced product line — CISOs and security architects must update agentic threat models this quarter and pick a defender stack now. Software-distribution: GPT-5.5 going Bedrock-native plus the end of Microsoft exclusivity decouples closed-frontier intelligence from cloud residency for the first time, so boards previously locked in by Azure-only constraints should reopen OpenAI procurement on AWS or GCP within the limited-preview window before pricing hardens at GA. See the Model Pulse for the full architecture read on the six new tree rows that landed this week.