The customer would like to know if Identity Recovery overall has any identified vulnerability with the specific type of AI-driven vulnerability called "Mythos". The term is used as a generic risk descriptor to represent a class of AI-assisted or highly automated attack techniques capable of rapidly discovering and chaining vulnerabilities, as highlighted by industry research following Anthropic’s public disclosure of Claude Mythos Preview.
Based on the product team review, Identity Recovery is not impacted by Mythos. The referenced research pertains to browser‑level vulnerability discovery, and it is the customer’s responsibility to ensure that all client‑side software, including browsers, remains fully patched and up to date.
Quest maintains a proactive security posture based on our standards, including continuous monitoring for CVEs across our supply chain, regular third‑party security assessments, and ongoing use of SAST and DAST tools. No vulnerabilities related to “Mythos” have been identified in our product.