Zhipu AI’s answer to Project Glasswing marks shift for Chinese cyber safety: researcher
Zhipu AI has launched China's first answer to Project Glasswing, a shift in how the country's top AI labs approach global cybersecurity. The company's 'Shield of Open Source' programme offers free security audits and automated code-auditing tools.
Intelligence analysis by Llama

Zhipu AI's launch of GLM-5.3 model and 'Shield of Open Source' initiative signals a shift in China's approach to global cybersecurity. The programme offers free security audits and automated code-auditing tools.
Imagine you have a super powerful tool that can help you fix bugs in your software. Zhipu AI has created a tool that can do just that, and it's free! They're also making sure that only people who are trusted can use the most powerful parts of the tool.
Analysis
Zhipu AI's Answer to Project Glasswing: A Shift in Chinese Cyber Safety Approach
Zhipu AI's launch of China's first answer to Project Glasswing marks a significant shift in how the country's top AI labs approach global cybersecurity. The company's 'Shield of Open Source' programme offers free security audits to help users patch software vulnerabilities, as well as automated code-auditing tools via its ZCode platform. This initiative comes amid an escalating global debate over whether open-weight models amplify cyber risks by lowering the technical barrier for attackers.
According to Gabriel Wagner, an international AI governance researcher at Beijing-based Concordia AI, Z.ai appears to be proposing a kind of Project Glasswing with Chinese characteristics that sees openness as an asset rather than a drawback. This approach is a departure from the traditional view of openness as a vulnerability.
A Layered Risk-Review System for GLM-5.3
Zhipu pledged stricter oversight while implementing a layered risk-review system for GLM-5.3 that blocks high-risk requests without disrupting routine, low-risk developer tasks. The model's most sensitive offensive capabilities would be 'reserved exclusively for verified users' under a restricted access plan dubbed 'Cybersecurity Trusted Access'.
Implications for Global Cybersecurity
The launch of Zhipu AI's GLM-5.3 model and 'Shield of Open Source' initiative has significant implications for global cybersecurity. By offering free security audits and automated code-auditing tools, Zhipu is providing a valuable resource for developers to patch software vulnerabilities. This approach also highlights the importance of openness in addressing cyber risks, rather than viewing it as a vulnerability.
Conclusion
In conclusion, Zhipu AI's launch of China's first answer to Project Glasswing marks a significant shift in how the country's top AI labs approach global cybersecurity. The company's 'Shield of Open Source' programme offers free security audits and automated code-auditing tools, providing a valuable resource for developers to address software vulnerabilities. This approach also highlights the importance of openness in addressing cyber risks, rather than viewing it as a vulnerability.
Key points
- Zhipu AI has launched China's first answer to Project Glasswing, a shift in how the country's top AI labs approach global cybersecurity.
- The company's 'Shield of Open Source' programme offers free security audits and automated code-auditing tools.
- The programme provides a valuable resource for developers to patch software vulnerabilities and address cyber risks.
If Zhipu AI's 'Shield of Open Source' initiative is successful, it could lead to a significant reduction in software vulnerabilities and a safer online environment for developers.
However, if the initiative is not implemented correctly, it could lead to a situation where high-risk requests are not properly blocked, potentially allowing malicious actors to exploit the system.



