Stock Markets June 22, 2026 01:09 PM

OpenAI Enhances Daybreak Program with GPT-5.5-Cyber and Expanded Codex Security

New model and tooling aim to accelerate vulnerability discovery and remediation across open-source and enterprise codebases

By Nina Shah
Share
Twitter Reddit Facebook LinkedIn
MSFT GOOGL GOOG

OpenAI expanded its Daybreak cybersecurity initiative by releasing an upgraded GPT-5.5-Cyber model, an updated Codex Security plugin, a Cyber Partner Program with major security vendors, and a Patch the Planet effort to fund audits of critical open-source projects. The moves are targeted at accelerating identification, validation, and automated remediation of software vulnerabilities while limiting access to verified defenders.

OpenAI Enhances Daybreak Program with GPT-5.5-Cyber and Expanded Codex Security
MSFT GOOGL GOOG
Summarize with
ChatGPT Perplexity Claude Grok Gemini

Key Points

  • OpenAI released GPT-5.5-Cyber, an updated Codex Security plugin, a Daybreak Cyber Partner Program, and Patch the Planet to accelerate vulnerability detection and remediation.
  • The GPT-5.5-Cyber model outperformed GPT-5.5 on CyberGym (85.6% vs 81.8%), ExploitGym (39.5% vs 25.95%), and SEC-bench Pro (69.8% vs 63.1%) and is limited to verified defenders with monitoring and scoped controls.
  • Codex Security has scanned over 30 million commits across more than 30,000 codebases; human reviewers marked 70,000+ findings as fixed and the system auto-flagged over 500,000 findings as resolved. Sectors impacted include cybersecurity, enterprise IT, and open-source infrastructure.

OpenAI said it is broadening the reach of its Daybreak cybersecurity effort with a package of product updates and partnerships designed to speed the discovery and remediation of software vulnerabilities. The company unveiled a finalized GPT-5.5-Cyber model, an updated Codex Security plugin with extended scanning and patching capabilities, a Cyber Partner Program for security vendors, and Patch the Planet, an initiative to subsidize security work on critical open-source projects.

According to OpenAI, the full GPT-5.5-Cyber model delivers higher performance on several specialized security benchmarks when compared with GPT-5.5. The company reported a CyberGym score of 85.6% for GPT-5.5-Cyber versus 81.8% for GPT-5.5. On ExploitGym the model achieved 39.5% compared with 25.95% for GPT-5.5, and on SEC-bench Pro it delivered 69.8% versus 63.1% for GPT-5.5. OpenAI emphasized that GPT-5.5-Cyber is intended to be used by verified defenders whose work requires advanced cyber capabilities combined with verification, monitoring, and scoped controls.

The updated Codex Security plugin has been applied at scale since its March research preview, with OpenAI saying it has scanned more than 30 million commits across in excess of 30,000 codebases. Human reviewers have manually marked over 70,000 findings as fixed, and the system has automatically determined more than 500,000 findings to be fixed. OpenAI described the plugin as integrated into Codex to perform vulnerability identification, reachability analysis to determine which parts of code are reachable and therefore exploitable, collection of validation evidence, automated patch generation, and verification of results.

Alongside the tooling, OpenAI launched the Daybreak Cyber Partner Program and named initial partners that include Accenture, Akamai, Check Point, Cisco, Cloudflare, CrowdStrike, IBM, and Palo Alto Networks, among others. Participating security providers will be able to use GPT-5.5 with Trusted Access for Cyber in their security products and services. OpenAI said it plans to expand the program to additional organizations in the coming months.

To address vulnerabilities in widely used open-source software, OpenAI has established Patch the Planet, created with Trail of Bits and in collaboration with HackerOne and Calif, to fund security researchers working with open-source maintainers. More than 30 open-source projects have committed to take part, with initial participants including cURL, Go, Python, Sigstore, and pyca/cryptography.

OpenAI noted it has set up Trusted Access for Cyber partnerships with a set of national and regional entities, specifically naming Australia, Canada, France, Germany, Japan, Republic of Korea, and EU institutions including ENISA. The company framed these measures as part of a controlled deployment model - enabling advanced cyber capabilities while pairing them with verification and monitoring to limit misuse.


Implications and context

The suite of releases is framed as a way to improve the pace and scale of software security work by combining automated analysis, human validation, and funded research. Open-source maintainers and enterprise security teams are direct targets for these tools and programs, and security vendors are positioned to incorporate GPT-5.5 capabilities into commercial offerings under Trusted Access arrangements.

Risks

  • Access is limited to verified defenders and Trusted Access partnerships - the scope and effectiveness of these controls will affect how broadly the tools can be used by security teams. This impacts cybersecurity and enterprise software sectors.
  • Reliance on automated scanning and auto-determined fixes creates a dependency on tool accuracy and human review pipelines to avoid missed or incorrect remediation. This affects open-source projects and organizations that deploy automated patching.
  • The initial partner roster and phased rollout indicate capabilities may not be immediately available to all potential users, creating uncertainty for vendors and organizations planning integrations. This influences cybersecurity vendors and IT services.

More from Stock Markets

UWM Holdings Sees Options Volume Top 9,800 Contracts as Calls Dominate Activity Jun 22, 2026 EasyJet, Major Shareholders Seek at Least £600m More in Response to Castlelake Offer Jun 22, 2026 Micron to Supply Memory and Invest in Anthropic as AI Firms Race for Data-Center Components Jun 22, 2026 Market movers: SpaceX, Arm slide while chip, biotech and AI names climb Jun 22, 2026 PMIs, Crude Inventories and a Treasury Auction Shape Market Focus for Tuesday Jun 22, 2026