LIVE · cybersecurity feed
Live wire
FBI, South Korea warn of Gunra ransomware gang targeting critical infrastructureOpenAI locks down Astra over potential critical cyber capabilitiesCritical Flaws Discovered in Belgian eID Software Used by 2 Million PeopleSecurity Affairs newsletter Round 589 by Pierluigi Paganini – INTERNATIONAL EDITIONWebmail CSS Attacks Expose a New Risk for AI-Powered Email ToolsMetabase Zero-Day Exploited in the Wild, Exposing Admin Access and Sensitive DataCritical One-Click Vulnerability in Atlassian’s Rovo AI Exposed Enterprise DataCVE-2026-8037 · CISA Adds Progress LoadMaster Command Injection Flaw to KEV CatalogSensitive Info Goes Into ‘No Reply’ Emails Constantly. This Guy Sees It AllAtlassian Rovo Can Be Tricked Into Sending Jira and Confluence Data to Attackers
vulnerability

OpenAI releases ChatGPT 5.6 Cyber, but it's only for approved users

OpenAI has developed a new model called "GPT 5.6 Cyber," designed for vulnerability research, penetration testing, incident response, and remediation. [...]

zeroday.news ·

OpenAI has introduced "GPT 5.6 Cyber," a new suite of models specifically engineered for cybersecurity applications such as vulnerability research, penetration testing, and incident response. The company has confirmed that these advanced capabilities will not be made available to general users due to potential security risks, instead restricting access to a select group of approved partners.

The new models are being integrated into existing security products, managed services, and customer engagements offered by these partners. OpenAI stated that this approach allows more defenders to identify critical vulnerabilities, validate their exploitability, and expedite remediation efforts by leveraging their frontier cyber models within established services.

Access to GPT 5.6 Cyber is provided through what OpenAI terms "Daybreak Access," which includes two distinct versions: Daybreak Blue and Daybreak Red. Daybreak Blue is designed for a broad spectrum of defensive security tasks, while Daybreak Red is intended for more specialized and closely governed operations.

OpenAI detailed several ways these models can assist security teams, including identifying vulnerabilities, assessing exploitability, pinpointing affected systems, developing fixes, and facilitating their deployment into production environments. Partners are expected to utilize these models for tasks such as vulnerability discovery and validation, red teaming, penetration testing, incident response, and remediation across various enterprise settings.

The list of initial partners includes major consulting firms like Accenture, IBM, Capgemini, Cognizant, EY, KPMG, PwC, NCC Group, and SpecterOps. Additionally, leading security vendors such as Palo Alto Networks, CrowdStrike, Cisco, Sophos, Akamai, Fortinet, and Cloudflare are also rolling out access to these new capabilities.

OpenAI emphasized that the underlying models remain under the control of the approved partners and are not directly transferred to customers. Safeguards implemented by partners may include identity verification, clearly defined testing scopes, logging, monitoring, and human oversight. Partners are responsible for collaborating with organizations to establish engagement boundaries, review findings, and apply their expertise before any actions are taken.

This controlled distribution strategy aims to provide enterprises with access to advanced AI-driven security capabilities without requiring them to develop their own specialized cyber AI infrastructure. Cybersecurity providers and consultancies can apply to join the Daybreak Cyber Partner program, while organizations interested in utilizing the technology can do so through participating security providers.

vulnerabilityai
ShareXLinkedInWhatsAppFacebook

More News

view all →
vulnerability

NATO and an AI startup can now name and track software vulnerabilities

NATO’s cyber defense arm and a startup that uses artificial intelligence to find software flaws can now issue the ID numbers the industry uses to track those flaws, the European Union Agency for Cybersecurity announced last week. The NATO Cyber Security Centre, part of the NATO Communications and Information Agency, and AISLE, a cybersecurity company […] The post NATO and an AI startup can now nam

ransomwarecritical

FBI, South Korea warn of Gunra ransomware gang targeting critical infrastructure

The Gunra ransomware gang is breaching critical infrastructure organizations through vulnerabilities in popular brands of firewalls, the FBI and South Korea’s government warned.

vulnerability

Shipping 10–50× More Code? Watch This Webinar on Securing AI-Speed Development

AI is helping development teams produce far more code, far faster. But security teams still have to review vulnerabilities, manage dependencies, prioritize fixes, and control risk at human speed. When software output jumps 10 to 50 times, the problem is no longer just finding vulnerabilities. It is keeping security from becoming the bottleneck, or worse, losing control of what gets shipped.

security

Everything we launched during Agents Week

Our latest Agents Week has come to a close. Here’s a recap of all the announcements we made, from Wallets to Radar.

ransomware

New StormEncryptor ransomware used by former Medusa affiliate

A financially motivated threat actor previously associated with the Medusa ransomware operation is now deploying a new ransomware strain called StormEncryptor. [...]

phishing

North Korean spies are running local LLMs to cause AI mischief

Kimsuky's phishing attacks get an AI boost