More than a hundred cybersecurity specialists signed an open letter to the U.S. government. The technical message is clear: they're shooting the wrong team in the foot. They're asking for the export restriction on Claude Opus / Fable 5, Anthropic's model deemed too capable to circulate freely beyond certain borders, to be lifted.
The logic isn't philosophical. It's practical. If an attacker anywhere can access equivalent capabilities through Chinese, European, or open-source models, then the restriction doesn't stop the attack. It only limits the defense. Whoever wants to break in already has options. Whoever wants to protect loses one.
This matters because the asymmetry between attack and defense in cybersecurity was already severe before large language models. Attackers need just one weak point. Defenders have to cover all of them. Adding a barrier that only affects one side is a structural design flaw.
I recognize these profiles. They spend their days hunting for vulnerabilities before others exploit them, building detection systems for critical infrastructure, and preparing teams to respond when something fails. I've seen how they operate with scarce resources and real pressure. Telling them they can't use a tool while their adversaries can isn't caution. It's an unnecessary disadvantage.
Anthropic occupies an uncomfortable position. It built the model while insisting on stricter safeguards than its competitors, according to its public documentation. That same reputation for responsibility has now become the main argument for restricting it. The irony is obvious: whoever invested the most in safety faces the most barriers. Those who invested less circulate more freely. As a market incentive, it's inverted.
The U.S. government is applying logic that makes sense on paper. If something is powerful, it should be controlled. The problem arises when that reasoning assumes unilateral control is viable and that it amounts to strategic advantage. Neither of those ideas holds up in a global, distributed, partially open ecosystem of AI models. Controlling Fable 5 without touching its functional equivalents isn't containment. It's a gesture of containment.
The consequences of keeping the restriction in place are predictable. Defense teams in allied countries will keep doing their work with less capable tools, or tools of less transparent origin. Organizations protecting critical infrastructure will face constant dilemmas between following the rule and using what actually works. Researchers collaborating at an international scale will add friction to workflows that are already complex. None of this stops a single attack. It just makes responding harder.
What does the ecosystem gain if the restriction is lifted? That's harder to quantify, though more revealing. Defenders gain access to capabilities that already exist on the other side. The community can audit, compare, and critique the model in real-world scenarios. Anthropic retains incentives to keep strengthening safeguards under genuine scrutiny. The whole thing becomes more robust.
The parallel to the 1990s is hard to ignore. Back then, strong encryption algorithms were classified as controlled export munitions. The premise was identical. The outcome is well known: the rest of the world developed its own standards, local companies lost markets, and the restriction eventually got lifted because it proved unsustainable. The encryption that today protects transactions, medical communications, and personal data across the planet bears the mark of that battle. It wasn't the restriction that increased security. It was the mass adoption of good tools.
The specialists' letter isn't just a technical document. It functions as feedback from those working on the ground to those deciding from theory. The government can ignore it. It already did with cryptographers back in the day.
I still don't have a clear picture of how to fully balance the tension between openness and containment on these issues. I'm still exploring the lessons of that era. But the question that remains is whether we'll pay the same price again for ignoring the obvious.