Skip to content

AI Export Controls Fail Their First Real Test: GLM-5.2 Cybersecurity Benchmarks Expose the Gap

June 28, 2026 – Published on Tech Times

Two independent security evaluations published this week delivered a verdict that Washington’s export control architects did not want to hear: Zhipu AI’s GLM-5.2, a Chinese open-weight model that launched June 13 — one day after the US government banned Claude Fable 5 and Mythos 5 from global access — has matched or approached leading US AI on the exact class of cybersecurity capability that justified the ban. The model is freely downloadable by anyone on Earth, and no export order can reach it.

The finding matters because the enforcement architecture behind the Fable 5 ban was designed for a different era of controlled technology. The Export Administration Regulations were built to track physical items — chips, weapons components, hardware with serial numbers, facilities subject to on-site inspection. A 750-billion-parameter model weight file hosted on Hugging Face has no serial number, no facility, and no provenance chain. The enforcement mechanism that made export controls effective for semiconductors is architecturally inapplicable to AI weights once distributed. That gap is now empirically visible in the benchmark scores.

On the offensive-use side, security practitioners are already concerned. Jason Baker, managing security consultant at GuidePoint Security, said that Russian-language forums included discussions about the ease of adapting GLM-5.2 for hacking within days of its release.

Read More HERE.