ON
← Back to feed
New version of the open-weight model: GLM 5.3 improves safety capabilities
Germany💻 TechnologyCenter9 days ago

New version of the open-weight model: GLM 5.3 improves safety capabilities

The Chinese AI company z.ai has released the latest version of its open-weight model, GLM 5.3, which focuses on improvements in software development capabilities and cybersecurity performance. The model was trained using data from its predecessor, with enhancements made post-training, particularly in code development and security features. According to the developers, GLM 5.3 has more than doubled its security performance compared to previous versions. It demonstrates strong results in coding benchmarks and has shown improved ability to detect complex exploit chains. In collaboration with Chinese security researchers, z.ai identified over 2,400 new vulnerabilities across nearly 270 projects, including critical issues in widely used software such as the Linux kernel, WinRAR, Redis, and FFmpeg. Some of these vulnerabilities had remained undiscovered for decades. Additionally, z.ai introduced OpenVuln, a project offering security checks for software repositories hosted on GitHub, though pricing details remain unclear. Currently, GLM 5.3 is available only through paid subscriptions offered by z.ai.

Thunderbird plans to introduce a new desktop calendar with a redesigned interface aimed at improving user experience and competing with proprietary offerings from major tech companies. The open-source email client’s developers have begun working on a completely overhauled calendar system, offering early glimpses into its design through internal updates. This initiative aligns with Thunderbird's commitment to open-source principles, allowing users to provide feedback before the final version is released. The first iteration of the new calendar will not represent the end product, emphasizing a gradual rollout approach. The proposed layout divides the calendar interface into three main sections: a calendar grid, a navigation bar, and a sidebar for managing calendars and data sources. The calendar grid supports daily, weekly, monthly, or yearly views based on user settings. Users can switch between different views and timeframes using the navigation bar, while the sidebar can be collapsed if certain features are rarely used, such as when maintaining a single calendar. The overall structure mirrors the current Thunderbird calendar but simplifies the interface, aiming to better meet modern standards. Developers have already made improvements to several components, including the display of event details, the dialog for editing events, and notifications for unanswered invitations. These elements were previously considered outdated both visually and technically. Early access to these changes is available to users of Thunderbird Daily, the release channel for testers and developers. Initial user feedback has highlighted desired enhancements such as task integration, cross-platform interoperability, and a reassessment of view options, including agenda, mini-month, and multi-week views. However, the announcement does not clarify how or whether these features will be incorporated in future updates. Currently, there is no public timeline for the full release of the new calendar, nor any information regarding potential migration challenges from the existing system to the updated one. Additionally, details about support for third-party extensions remain unclear. The project team has not yet outlined specific steps for integrating external tools or ensuring backward compatibility, leaving many questions about the implementation process unresolved. Separately, Chinese AI company z.ai has launched a new version of its open-weight model, GLM 5.3, which claims to significantly enhance security capabilities. Building upon the training data of its predecessor, the update focuses on improving performance in software development and cybersecurity. According to the company, GLM 5.3 demonstrates superior abilities in identifying complex exploit chains and detecting vulnerabilities in code. It outperforms previous versions in coding benchmarks and has identified thousands of security flaws, some dating back decades. Among these findings, over 100 are classified as critical, affecting widely used software such as Linux, WinRAR, Redis, and FFmpeg. In collaboration with Chinese cybersecurity researchers, z.ai has uncovered more than 2,436 new vulnerabilities across nearly 270 projects. Many of these issues remained undiscovered for years, with the oldest flaw being over four decades old. The company provides detailed statistics on these findings through its “Vulnerability Ledger,” though most of the discovered issues lack formal disclosure or resolution. One notable project built around GLM 5.3 is OpenVuln, which allows developers to scan their GitHub repositories for known vulnerabilities by simply providing a repository URL. Despite its advanced features, GLM 5.3 is currently accessible only to paying customers of z.ai’s “Coding Plan” or users of the company’s internal tool, Harness ZCode. While the model was intended to be freely downloadable via HuggingFace, the company delayed its release until after completing additional security evaluations and hardening processes. This decision comes amid broader concerns about the safety of large language models, following reports of attacks on platforms like HuggingFace and investigations into the behavior of models such as Mythos and GPT-5.6 during simulated phishing and social engineering scenarios.

Go to the primary sources (7)

The official sources this coverage is built on. Read them directly to bypass framing.

4 reports

heise online logoheise onlineIndependentCenterFactual 85Objective 8212 days ago
Thunderbird is planning new desktop calendars

The Thunderbird development team is currently working on a completely redesigned calendar feature, offering early insights into the new interface aligned with the open-source principles of the email client. The new design divides the interface into three sections: a calendar grid, navigation bar, and sidebar for calendars and data sources. While the layout resembles the current Thunderbird calendar, it aims to simplify the user experience and compete with proprietary offerings from Google, Microsoft, and Apple. Early versions of the updated components, such as event details and editing dialogs, have been released to testers, but there is no public timeline for full release or migration plans from the old calendar system.

Bias read (Center): The article discusses technological development related to software features and does not involve politically charged topics such as government policies, elections, or social issues. The focus is purely on product improvement and user feedback within the context of open-source software development.

Why factuality (85): The article accurately reflects the content of the primary source document, mentioning the redesign efforts, the three-section layout (calendar grid, navigation bar, sidebar), and the goal to compete with major calendar services. It also references specific components like the Event Details dialog a

Why objectivity (82): The tone remains professional and informative, focusing on the features and goals of the redesign. While there is some promotional language ('konkurrieren können'), the overall presentation is balanced and avoids overt bias. The article presents information without injecting personal opinion beyond

heise online logoheise onlineIndependentCenterFactual 85Objective 7815 days ago
Google's chief threat intelligence officer: Thanks to AI, more zero-days than ever

The Google Threat Intelligence Group (GTIG), part of Google Cloud, has increasingly focused on analyzing malware and security vulnerabilities using AI. In an interview with heise online, Sandra Joyce, head of GTIG and co-leader of the Aspen Institute U.S. Cybersecurity Group, discusses how AI is being used by both attackers and defenders. She notes that while AI enables criminals to scale their attacks, it also empowers cybersecurity experts to detect more zero-day vulnerabilities than ever before. Joyce emphasizes that AI’s impact on cybersecurity is significant but often overlooked during new technology adoption.

Bias read (Center): The article presents a balanced discussion of AI's dual role in cybersecurity, both as a tool for attackers and defenders. It does not take a clear ideological stance on AI regulation or policy, instead focusing on technical implications. The framing remains neutral, avoiding overtly positive or dyst

Why factuality (85): The article reports on an interview with Sandra Joyce, head of Google Threat Intelligence Group (GTIG), discussing the role of AI in cybersecurity. It mentions GTIG's background, its work with Mandiant, and its publications on malware like Coruna and DarkSword. The claim about more zero-days being f

Why objectivity (78): The article presents the interview in a neutral tone but includes some emotionally charged language such as 'größten Gefahren' (greatest dangers) and frames AI as both a tool for attackers and defenders. While it does not overtly take sides, it emphasizes the growing threat landscape, which may subt

heise online logoheise onlineIndependentCenterFactual 70Objective 6518 days ago
Trump's new AI testing framework: Open models are not included

The White House has introduced a new framework for evaluating powerful AI models, according to US media reports. This framework excludes open-weight models from security checks. The decision follows weeks of debate within the Trump administration regarding the handling of open-source AI models. While concerns grow in Washington over increasingly capable, freely available, and inexpensive models, particularly from China, the government aims to promote open US models and avoid falling behind in the technological competition through overly strict regulations. Representatives from major AI companies such as OpenAI, Anthropic, Google, Meta, and Nvidia participated in discussions. Recent security incidents at OpenAI and Anthropic have added urgency to these talks. Developers can voluntarily submit their models up to 30 days before planned release for evaluation by government agencies using a secret benchmark system. However, the criteria for inclusion remain unclear, and the framework itself remains confidential, accessible only to participating companies.

Bias read (Center): The article presents the situation neutrally, discussing both the concerns raised by the administration and the potential benefits of promoting open-source AI models. It does not favor one side over the other but rather outlines the current state of the debate and the measures being considered.

Why factuality (70): The article accurately reflects the content of WIRED and Axios, including the voluntary nature of the AI model submissions and the exclusion of open models. It includes details about the security breaches at OpenAI and Anthropic, aligning with the primary source. However, it does not provide direct

Why objectivity (65): The article has a somewhat negative tone towards the Trump administration's approach, emphasizing the lack of transparency and the potential benefits for large companies. While it presents facts, it frames the situation in a way that suggests criticism of the administration's secrecy.

heise online logoheise onlineIndependentCenterFactual 60Objective 859 days ago
New version of the open-weight model: GLM 5.3 improves safety capabilities

The Chinese AI company z.ai has released the latest version of its open-weight model, GLM 5.3, which focuses on improvements in software development capabilities and cybersecurity performance. The model was trained using data from its predecessor, with enhancements made post-training, particularly in code development and security features. According to the developers, GLM 5.3 has more than doubled its security performance compared to previous versions. It demonstrates strong results in coding benchmarks and has shown improved ability to detect complex exploit chains. In collaboration with Chinese security researchers, z.ai identified over 2,400 new vulnerabilities across nearly 270 projects, including critical issues in widely used software such as the Linux kernel, WinRAR, Redis, and FFmpeg. Some of these vulnerabilities had remained undiscovered for decades. Additionally, z.ai introduced OpenVuln, a project offering security checks for software repositories hosted on GitHub, though pricing details remain unclear. Currently, GLM 5.3 is available only through paid subscriptions offered by z.ai.

Bias read (Center): The article discusses advancements in artificial intelligence models and their applications in cybersecurity and software development. There is no explicit political framing, and the content remains focused on technical achievements and research findings without leaning toward any particular side in

Why factuality (60): The article discusses GLM 5.3, a new version of an open-weight model by z.ai, focusing on improvements in security capabilities and software development performance. However, it contains no information related to the primary source document about Thunderbird's calendar redesign. The content is entir

Why objectivity (85): The article maintains a relatively neutral tone, presenting facts about the model's improvements without overt bias or emotional language. However, it includes subjective statements such as 'the best open-weight model for software development' which could imply favoritism.

How each side covered it

The same event, grouped by the political lean of the outlets covering it.

How each side covered it

Support independent, bias-aware news and unlock the social pulse, community voting, and every other Supporter feature.

Become a Supporter

Covered around the world

The same event as reported in other countries.

Covered around the world

Support independent, bias-aware news and unlock the social pulse, community voting, and every other Supporter feature.

Become a Supporter

Claims check

Key factual claims, and how many sources assert vs dispute each.

Claims check

Support independent, bias-aware news and unlock the social pulse, community voting, and every other Supporter feature.

Become a Supporter

Keep the news honest.

ObjectiveNews is reader-funded and ad-free — we show you the bias instead of hiding it. Support independent journalism for €4/month.

Become a Supporter

Related stories