Skip to main content
Live
Main content

OpenAI launches Daybreak, pairing GPT-5.5-Cyber with Codex Security

Daybreak combines OpenAI's new cyber-tuned models with the Codex Security agent to find and patch vulnerabilities before attackers do.

Jaeden Schafer
Editor in Chief · · 4 min read
OpenAI logo

OpenAI launched Daybreak on May 11, 2026, a security program that pairs its Codex Security agent with new cyber-tuned models to find and patch software vulnerabilities before attackers exploit them. The product slots in just over a month after Anthropic announced Claude Mythos, the rival security model it held back from public release under an initiative called Project Glasswing. Daybreak gives OpenAI a direct answer in a category where it had no comparable offering until today.

The core of Daybreak is automation against the vulnerability backlog. Codex Security, which OpenAI first shipped in March 2026, ingests an organization's code, builds a threat model around it, traces likely attack paths, validates exploitable weaknesses, and then prioritizes detection of the highest-risk issues. Daybreak wraps that agent in a broader stack that OpenAI describes as combining its strongest models, Codex, and outside security partners.

Two new model variants sit behind the launch: GPT-5.5 with Trusted Access for Cyber, and GPT-5.5-Cyber. Both began rolling out the week before Daybreak's announcement, suggesting the product release was timed to land once the underlying models were already in customers' hands. OpenAI has not disclosed pricing, availability tiers, or which named partners are part of the initial cohort.

Key facts

  • 01OpenAI launched Daybreak on May 11, 2026, a security initiative built on Codex Security and GPT-5.5-Cyber.
  • 02Codex Security, the underlying agent, originally launched in March 2026.
  • 03Daybreak arrives just over a month after Anthropic announced Claude Mythos under its Project Glasswing initiative.
  • 04GPT-5.5 with Trusted Access for Cyber and GPT-5.5-Cyber began rolling out the week before Daybreak's launch.

The competitive context is direct. Anthropic's Claude Mythos was positioned as a security-focused model the company judged too dangerous to release publicly, shared instead with vetted partners through Project Glasswing. Even with that controlled distribution, at least a few unauthorized parties obtained access — a wrinkle that complicates the closed-distribution defense strategy and one that OpenAI will need to address in its own partner program.

Daybreak brings together OpenAI's most capable models, the Codex Security agent that shipped in March 2026, and a new GPT-5.5-Cyber variant that began rolling out the week prior.
Jaeden Schafer

OpenAI's framing is more open than Anthropic's. Rather than withholding the model, the company says Daybreak will work alongside "industry and government partners" as it prepares to "deploy increasingly more cyber-capable models." The phrasing telegraphs an iterative release cadence rather than a single guarded artifact, and points to repeat shipments of cyber-tuned variants over the coming quarters.

The underlying bet is that defenders gain more from agentic vulnerability hunting than attackers do. Codex Security's pitch is volume: an agent that can map an entire codebase, hypothesize attack paths, and confirm exploitability at a scale no human red team can match. If the model surfaces real bugs faster than adversaries can weaponize them, the defensive economics flip in favor of whoever deploys the agent first.

That bet is also the central risk. The same capability that finds bugs for a defender finds bugs for an attacker, and unauthorized access — the issue Anthropic ran into with Claude Mythos — turns a defensive tool into an offensive one. OpenAI's reliance on Trusted Access gating for the GPT-5.5-Cyber variant suggests the company is aware of the dual-use problem, but the access-control mechanics have not been detailed publicly.

Daybreak also extends OpenAI's product surface beyond consumer ChatGPT and developer APIs into specialized enterprise verticals. The company has spent 2026 building out commercial-grade products — including the $4B enterprise unit covered earlier this month — and a security agent aimed at corporate code review fits the same trajectory. Codex Security in particular targets a buyer (the CISO) with budget separate from the developer-tools line item.

Related · from this week
OpenAI expands Daybreak cyber service with new GPT-5.6-Cyber model
Jaeden Schafer · 4 min read →

For Anthropic, the launch resets the security-AI race from a closed-distribution model to a head-to-head product competition. Claude Mythos's private-release stance becomes harder to defend commercially if Daybreak demonstrates that controlled-but-broader access yields better outcomes for customers. Anthropic will likely respond with either a wider Mythos rollout or a more aggressive Glasswing partner expansion.

OpenAI moving into agentic security defense is the more important signal here than the model names. Codex Security and Daybreak suggest the frontier labs now see vulnerability discovery as a deployable product, not just a benchmark. Whoever industrializes that first captures a security-tools market that has historically resisted automation, and OpenAI just put its stake down a month behind Anthropic but with a less-encumbered distribution model.

ShareXLinkedInEmail
AI Box

Every AI model. One chat.

The latest models from ChatGPT, Claude, Gemini, Sora, ElevenLabs — 80+ models in a single chat. Compare answers side by side. Pick the best one every time.

  • ChatGPT, Claude, Gemini, Grok, DeepSeek — in one chat
  • Generate images & video with Sora, Veo, Ideogram
  • Compare any two models side by side
  • From $8.99/mo · 80+ models, all included
Try AI Boxaibox.ai
Trusted by 3,000+ teams
Got a tip?

Working on something we should cover, or seeing a story we missed? Send leads, documents, or feedback to hello@aichatdaily.com. For sensitive tips, see our secure tips page for Signal and PGP options.

Spotted an error? Email hello@aichatdaily.com with the URL and the issue, or read our full corrections policy.

AI Box Daily briefingFree · Daily · No fluff

Stay ahead of everyone in AI.

The tightly edited AI news email engineers, founders, and investors actually open. One email. Every weekday. Five minutes to finish.

Loved by 10,000+ AI professionals
Free forever. Unsubscribe with one click.

The briefing read inside teams at

Keep reading

More from Security

OpenAI logo
Security

OpenAI expands Daybreak cyber service with new GPT-5.6-Cyber model

The frontier lab splits Daybreak into Blue and Red tiers, with a purpose-trained cyber model available only to trusted partners including Accenture and Crowdstrike.

Jaeden Schafer4 min read
OpenAI logo
Security

OpenAI and Trail of Bits launch Patch the Planet for open-source security

OpenAI's Codex Security backs human reviewers at Trail of Bits in a direct counter to Anthropic's Mythos.

Jaeden Schafer5 min read
OpenAI logo
Security

OpenAI releases Sol with no clear US government approval process

Eighteen months into the Trump administration, nobody — including frontier labs — can explain how AI models get cleared for public release.

Jaeden Schafer5 min read