Big Technology Podcast
Big Technology Podcast

Pentagon Insider: What's Next For Anthropic and The Department of War — With Michael Horowitz

Michael Horowitz is the former deputy assistant secretary of defense for force development and emerging capabilities at the Department of Defense, and currently a professor at the University of Pennsylvania. Horowitz joins Big Technology to discuss the Anthropic–Pentagon rupture and what it signals

Featured Speakers

Alex Kantrowitz HostMichael Horowitz Guest

Topics Discussed

Episode Summary

Executive Summary: The episode examines the Anthropic–Pentagon rupture, arguing it was driven less by substantive conflict than by mistrust, culture, and politics. Michael Horowitz explains that Claude’s current military use is mostly decision support inside Maven Smart System, not autonomous targeting, and that Anthropic’s mass-surveillance and autonomous-weapons concerns reflect future risks more than present uses. He warns the government’s “supply chain risk” response could chill future AI-defense partnerships.

Main Topics: Why the Anthropic–Pentagon dispute escalated (Priority: 5/5): Horowitz says the blowup likely reflects personalities, politics, and mistrust more than an active dispute over current operational uses. The Maduro-operation trigger and Anthropic’s questioning of how its tech was used appear to have offended the Pentagon and damaged trust. Mass surveillance and contract language (Priority: 5/5): A major point of contention was contract wording around “mass surveillance.” The Pentagon viewed its obligations as already covered by law, while Anthropic wanted explicit guardrails against AI-enabled de-anonymization and future misuse against citizens. Autonomous weapons terminology and readiness (Priority: 5/5): Horowitz distinguishes real Pentagon policy language (“autonomous weapon systems”) from Anthropic’s broader phrase “fully autonomous weapons.” He argues current LLMs are not ready for battlefield autonomy and that the military already has long-standing autonomous systems unrelated to LLMs. How Claude is actually used in the military (Priority: 4/5): Claude is described as one input within Maven Smart System, supporting analysis, public-source querying, and simulation—not direct targeting. Human review remains central, and operational use is still behind the power curve compared with commercial AI. Government leverage and the supply chain risk designation (Priority: 5/5): The Pentagon’s move to label Anthropic a supply chain risk is framed as unusually aggressive and potentially excessive, especially given the company’s role in current operations. Horowitz says the designation may not hold up legally and is confusing alongside talk of forcing Anthropic to work via the Defense Production Act. Broader impact on AI procurement and industry trust (Priority: 4/5): The dispute may deter AI firms from partnering with defense agencies if contracts can be weaponized in response to disagreements. Still, Horowitz notes other labs like OpenAI and xAI are already willing to work with classified defense use cases. AI’s long-term military impact (Priority: 4/5): Horowitz outlines three buckets of AI impact: back-office efficiency, intelligence/surveillance/decision support, and battlefield/autonomous systems. He argues the biggest near-term gains are in logistics and decision support, while frontier combat uses remain constrained by reliability and communications limits.

Key Arguments: The dispute is fundamentally a breakdown in trust, not a fight over a live warfighting capability. Anthropic was the first frontier lab willing to do classified defense work, which made the breakup more surprising. The Pentagon’s view is that vendors do not get to dictate lawful end uses for government-purchased technology, just as weapons manufacturers do not constrain military use cases. Anthropic’s concerns about mass surveillance are understandable in principle, but the Pentagon may not be the best institution to address them. Claude’s current role is likely limited to analysis, querying public and classified information, and simulations inside Maven Smart System, with humans still in the loop. Autonomous weapons in Pentagon policy are not the same as speculative “fully autonomous weapons”; the U.S. military has used autonomous weapon systems for decades. LLMs are not currently the best tool for direct battlefield targeting; more deterministic and specialized systems are more appropriate. The supply chain risk designation is more akin to treatment of hostile foreign vendors and could be legally vulnerable. Using both a supply chain risk label and the Defense Production Act in opposite directions reveals confusion in the government’s posture. The biggest danger is not immediate robot warfare, but the potential chilling effect on future public-private defense AI collaboration.

Data Points: Timeframe of Pentagon AI policy update: about a month or so ago - Horowitz says the Pentagon updated its AI policy recently to require an “all lawful uses” provision in future contracts. Anthropic’s role: first frontier AI lab willing to do classified work - He says Anthropic was the first major frontier lab prepared to support U.S. national security in classified settings. Autonomous weapon systems history: more than 40 years - Horowitz notes the U.S. military has used autonomous weapon systems for over four decades. Close-in weapon system era: since like 1980 - He cites CIWS as an example of long-running military autonomy used by the U.S. and dozens of other militaries. Military AI reliability standard: people die if it doesn’t work - Used to explain why military testing and evaluation standards are far stricter than commercial product release norms. Off-ramp period: six months - Government agencies reportedly gave a six-month phaseout window for Anthropic-related use cases. Supply chain risk comparison: Huawei - Horowitz compares the designation to labels typically used for foreign adversaries and backdoor risks. Potential civilian risk: de-anonymization of anonymized data - Anthropic’s concern about how AI advances could enable mass surveillance. AI deployment categories: 3 buckets - Horowitz divides military AI uses into back-office work, intelligence/decision support, and battlefield autonomy. AI crash reduction example in ad context: nearly 75% - This number appears in a sponsor message about Samsara, not the discussion itself.

Pivotal Quotes: "this is about personalities in politics masquerading as a policy dispute" — Michael Horowitz: His core thesis on why the Anthropic–Pentagon clash escalated. "crushing one of the most innovative companies in the world and salting the earth is not good for American innovation or the American economy" — Michael Horowitz: His reaction to the Pentagon’s harsh supply chain risk response. "we don't believe that today's frontier AI models are reliable enough to be used in fully autonomous weapons" — Dario Amodei: Quoted by the host as Anthropic’s stance on present-day model readiness for weaponization.

Implications: The fight may set a precedent for how much control AI vendors can assert over government use, and how hard the government can push back. If mishandled, it could slow defense AI adoption, chill vendor participation, and intensify U.S. debates over autonomy and surveillance.

🔓 Sign Up for Unlimited Episode Search

About Big Technology Podcast

The Big Technology Podcast takes you behind the scenes in the tech world featuring interviews with plugged-in insiders and outside agitators. Alex Kantrowitz, a Silicon Valley journalist who's interviewed the world's top tech CEOs — from Mark Zuckerberg to Larry Ellison — is the host.

View all episodes from Big Technology Podcast