Daybreak program brings subsidized models, training, and support to under-resourced teams

OpenAI has announced a commitment of $1 billion in credits to provide subsidized access to its AI services and training for cybersecurity defenders globally. This initiative, named "Daybreak for Frontline Defenders," was unveiled on Thursday and is designed to support under-resourced organizations in critical sectors over the next six months.
The program targets entities such as critical infrastructure organizations, community banks, non-profits, and open-source maintainers. These groups are often responsible for securing essential services but lack the financial resources or staff to implement advanced AI models and agentic technologies for cybersecurity hardening. This makes sectors like water systems, electrical utilities, and hospitals particularly vulnerable to ransomware attacks and disruptions by government-backed cyber operatives.
The initiative comes as experts voice increasing concerns that autonomous agents and other AI tools could lead to more severe cyber disruptions. OpenAI president Greg Brockman highlighted these fears, stating that critical infrastructure outages, such as prolonged water service interruptions, could become commonplace.
In addition to the financial credits, OpenAI plans to enhance its training and hands-on support for defenders in essential sectors. The company recently convened a meeting with utility companies from over 40 states, collectively serving more than half of the U.S. population. A pilot program is also being launched with the Multi-State Information Sharing and Analysis Center (MS-ISAC) to offer guided training and assistance to state, local, tribal, and territorial cyber defenders, starting with public-sector and water-system personnel. This pilot aims to help participants validate findings, prioritize remediation, and develop scalable defense strategies.
This new program coincides with the debut of OpenAI's latest model, Astra, which researchers have described as highly capable in cybersecurity. OpenAI confirmed earlier in the week that Astra had reached a "critical" cybersecurity capability threshold, indicating its proficiency in identifying and exploiting zero-day vulnerabilities. This capability poses potential risks from malicious users and even from the model itself if misaligned.
Consequently, Astra is being released with restricted cybersecurity capabilities, enforced through system-level mitigations and model-level refusals to block certain prompts and tasks. Participants in OpenAI’s Daybreak Blue and Daybreak Red programs will not have immediate access to Astra. Daybreak Blue provides restricted access to GPT-5.6 Sol for defensive cybersecurity workflows, while Daybreak Red, requiring additional approval, uses GPT-5.6 Cyber for authorized offensive security actions like exploit development and penetration testing. OpenAI intends to make Astra available to these programs at a later date.
A weakness has been identified in Tenda CP3 27.5.57.101. This issue affects some unknown processing of the file Net/NetCheckPing.cpp. This manipulation of the argument interface_name/host causes os command injection. The attack can be initiated remotely.
A security flaw has been discovered in Tenda CP3 27.5.57.101. This vulnerability affects the function SystemAsh of the file Apis/system.c of the component Kylin. The manipulation of the argument AlarmVoiceURL results in os command injection. It is possible to launch the attack remotely.

Attackers are exploiting a new unpatched vulnerability in Magento Open Source and Adobe Commerce that lets them run malicious code on an online store's server without logging in, Dutch e-commerce security company Sansec said in an advisory published on September 5. Sansec, which discovered the flaw and named it StyleSmuggler, said attacks started on September 4. "Sansec is publishing early
In BPF instructions that load/store a value from/to a scratch memory register the register index is an unsigned 32-bit integer and must not exceed 15, but libpcap BPF interpreter does not validate the value. In particular uncommon use cases a crafted filter program can cause the interpreter to try reading and writing the OS process memory in the 16GiB starting at the current stack frame on 64-bit architectures and in the entire address space on 32-bit architectures.

Attackers are exploiting two new PaperCut flaws to steal credentials and gain privileged access in education-sector attacks across the U.S. and Europe. Attackers are exploiting two recelty disclosed PaperCut flaws, CVE-2026-81578 and CVE-2026-82078, in attacks targeting schools and other education organizations in the U.S. and Europe, as reported by TheHackerNews. Arctic Wolf researchers observed

JetBrains is urging Cadence users to revoke and rotate all credentials following a security incident last month in which unidentified threat actors exploited a recently disclosed critical vulnerability in TeamCity to breach its own environment. "Cadence users should immediately revoke or rotate all credentials and secrets that may have been used to run their Cadence executions," JetBrains said.