LIVE · cybersecurity feed
Live wire
Attackers exploit zero-days in consistently besieged SonicWall productIntroducing context-aware vulnerability discovery and remediation with Cloudflare Managed Defense and OpenAI Daybreak modelsHPE patches critical ArubaOS-CX remote code execution flawCVE-2026-82329 · Attackers Pounce on Critical Artifactory Flaw Following DisclosureCVE-2026-0768 · Critical Langflow flaw exploited to steal OpenAI and AWS keysCVE-2026-82329 · Attackers Exploit Critical JFrog Artifactory Flaw to Mint Admin Tokens Days After DisclosureCVE-2026-82329 · Critical JFrog Artifactory Vulnerability Reportedly Exploited in the WildHackers Are Probing PaperCut Servers, and 47% Still Have No PatchNew Malware Uses Fake CAPTCHAs to Deploy BackdoorCVE-2026-76581 · Five Critical WordPress Plugin and Theme Flaws Enable Site Takeover or RCE
ai

OpenAI commits $1B in AI credits to frontline cyber defenders

Daybreak program brings subsidized models, training, and support to under-resourced teams

zeroday.news ·

OpenAI has announced a commitment of $1 billion in credits to provide subsidized access to its AI services and training for cybersecurity defenders globally. This initiative, named "Daybreak for Frontline Defenders," was unveiled on Thursday and is designed to support under-resourced organizations in critical sectors over the next six months.

The program targets entities such as critical infrastructure organizations, community banks, non-profits, and open-source maintainers. These groups are often responsible for securing essential services but lack the financial resources or staff to implement advanced AI models and agentic technologies for cybersecurity hardening. This makes sectors like water systems, electrical utilities, and hospitals particularly vulnerable to ransomware attacks and disruptions by government-backed cyber operatives.

The initiative comes as experts voice increasing concerns that autonomous agents and other AI tools could lead to more severe cyber disruptions. OpenAI president Greg Brockman highlighted these fears, stating that critical infrastructure outages, such as prolonged water service interruptions, could become commonplace.

In addition to the financial credits, OpenAI plans to enhance its training and hands-on support for defenders in essential sectors. The company recently convened a meeting with utility companies from over 40 states, collectively serving more than half of the U.S. population. A pilot program is also being launched with the Multi-State Information Sharing and Analysis Center (MS-ISAC) to offer guided training and assistance to state, local, tribal, and territorial cyber defenders, starting with public-sector and water-system personnel. This pilot aims to help participants validate findings, prioritize remediation, and develop scalable defense strategies.

This new program coincides with the debut of OpenAI's latest model, Astra, which researchers have described as highly capable in cybersecurity. OpenAI confirmed earlier in the week that Astra had reached a "critical" cybersecurity capability threshold, indicating its proficiency in identifying and exploiting zero-day vulnerabilities. This capability poses potential risks from malicious users and even from the model itself if misaligned.

Consequently, Astra is being released with restricted cybersecurity capabilities, enforced through system-level mitigations and model-level refusals to block certain prompts and tasks. Participants in OpenAI’s Daybreak Blue and Daybreak Red programs will not have immediate access to Astra. Daybreak Blue provides restricted access to GPT-5.6 Sol for defensive cybersecurity workflows, while Daybreak Red, requiring additional approval, uses GPT-5.6 Cyber for authorized offensive security actions like exploit development and penetration testing. OpenAI intends to make Astra available to these programs at a later date.

ai
ShareXLinkedInWhatsAppFacebook

More News

view all →
ai

[Virtual Event] What Every Enterprise Should Know About Securing Cloud Assets in the Age of AI

ai

[Virtual Event] Building a Secure AI Strategy for the Enterprise

vulnerabilitycritical

Introducing context-aware vulnerability discovery and remediation with Cloudflare Managed Defense and OpenAI Daybreak models

Use production traffic and security signals to prioritize findings, prepare edge mitigations when safe, and propose code patches. By combining WAF data with OpenAI Daybreak models, Vulnerability Discovery and Remediation helps teams identify and patch the most critical threats first.

vulnerabilityhigh

Attackers exploit zero-days in consistently besieged SonicWall product

SonicWall customers have confronted a barrage of attacks for years, including five actively exploited vulnerabilities in SMA 1000 appliances since late 2025. The post Attackers exploit zero-days in consistently besieged SonicWall product appeared first on CyberScoop.

breach

French hospital fined €500,000 after breach exposes data of 727,000

France's data protection authority (CNIL) has fined Hôpital privé de la Loire €500,000 ($580,000) for failing to adequately protect patients' and their relatives' data. [...]

finance

Large Enterprises Targeted in Fake Merger & Acquisition Scams

Threat actors behind the "Phantom Deal" campaign are studying companies in extreme detail, aiming to dupe midlevel employees into initiating large financial transfers.