update: Katie Moussouris reviewed the underlying paper. no jailbreak. no guardrail bypass. it was a "fix this code" prompt — standard defensive security.
Anthropic confirms: the capability already exists in GPT-5.5, Opus, Kimi 2.7.
the export control was never about what the model could do.