According to Bloomberg, the breach occurred on the very day Anthropic went public with its announcement of the model. The users' methods included drawing on system access that one member had acquired through contract evaluation work done for an Anthropic vendor, as well as deploying reconnaissance tools typically found in a cybersecurity researcher's toolkit. Knowledge of how Anthropic structures its model endpoints — information that had reportedly been exposed when Mercor, an AI training startup, suffered a data breach — allowed the group to locate Mythos online.