Foundation models may exhibit staged progression in novel CBRN threat disclosure