OpenAI's GPT-5.6-Cyber Completes 95% of Exploit Requests to Arm Defenders
OpenAI launches GPT-5.6-Cyber and a two-tier Daybreak program, giving vetted defenders a model that answers 95% of advanced exploit requests — up from 1.5% for the standard model.
- New model: OpenAI launches GPT-5.6-Cyber, a purpose-trained cybersecurity model available through the Daybreak Red tier.
- 95% completion rate: GPT-5.6-Cyber answers 95% of advanced exploit requests vs. 1.5% for the standard GPT-5.6 Sol model.
- Two-tier program: Daybreak Blue (GPT-5.6 Sol, guardrails removed) for most defenders; Daybreak Red (GPT-5.6-Cyber) for authorized red teamers and exploit researchers.
- Real-world proof: The model found two chained Chrome V8 vulnerabilities (CVE-2026-15903) plus 400+ kernel privilege escalation bugs, all responsibly disclosed.
- Hardware key required: All individual Daybreak members must use a hardware-backed passkey by September 1, 2026, or lose advanced access.
- Industry partners: Accenture, IBM, CrowdStrike, Cisco, and Palo Alto Networks can now embed Daybreak models into commercial security products.
OpenAI is expanding its Daybreak initiative with a new purpose-trained model, GPT-5.6-Cyber, and restructuring the program into two access tiers calibrated to capability and risk. The core argument: attackers are already using AI to compress the time between finding and exploiting a vulnerability, and defenders need equivalent tools before that window closes.
Two tiers, one mission
The expanded Daybreak program now splits into two lanes:
- Daybreak Blue gives approved defenders access to GPT-5.6 Sol, OpenAI's flagship general-purpose model, with cybersecurity guardrails removed. This is the recommended entry point for most security teams, covering vulnerability discovery, secure code review, malware analysis, incident response, and patch validation.
- Daybreak Red provides access to GPT-5.6-Cyber, a purpose-trained model built for authorized vulnerability research, exploit validation, and advanced security testing. It requires a stricter approval process and additional monitoring.
Security teams have long complained about high refusal rates from frontier AI models as labs try to serve defenders without handing the same capabilities to attackers. Daybreak Red is OpenAI's direct answer to that frustration.
The refusal problem, mostly solved
OpenAI built an internal benchmark called the Advanced Cybersecurity Completion Rate, measuring how often models respond to requests involving exploit-chain development, authentication bypass, privilege escalation, and similar scenarios. GPT-5.6-Cyber completes 95.0% of these requests. GPT-5.6 Sol manages 1.5%, and Daybreak Blue access raises that only to 2.0%.
The generational jump is equally significant. The previous model, GPT-5.5-Cyber, completed just 57.3% of the same requests. Security researchers who hit persistent refusals with that version will find the new model substantially more cooperative for authorized offensive work.
To make the difference concrete, here is what a prompt requesting a macOS Keychain bypass tool gets from each tier: