What happened
On June 22, 2026, OpenAI expanded its Daybreak cybersecurity initiative: updated the Codex Security plugin to GA (scanned 30M+ commits across 30,000+ codebases since March preview; 500,000+ findings auto-resolved), launched the full version of GPT-5.5-Cyber (85.6% on CyberGym, 39.5% on ExploitGym vs 25.95% for GPT-5.5), opened the Daybreak Cyber Partner Program (Accenture, Cisco, CrowdStrike, Palo Alto, IBM, etc.), and co-founded Patch the Planet with Trail of Bits and HackerOne to fund open-source security fixes for cURL, Go, Python, Sigstore, and 25+ other projects.
Why it matters
The first broadly accessible AI-native vulnerability discovery-to-patch pipeline from a frontier lab; shifts the bottleneck from finding bugs to fixing them at scale, with trusted-access tiers for both defenders and red teamers. Competitive pressure on Anthropic/Mythos and Microsoft/MDASH.
Applicability
Security engineering teams, AppSec programs, and MSSPs should evaluate the Codex Security plugin and Daybreak partner program immediately; open-source maintainers of critical infrastructure projects can apply to Patch the Planet now.