Video wird geladen...

Video konnte nicht geladen werden

Zur Startseite

Patch the Planet is our effort to help open source maintainers move from security findings to merged fixes. We’re working with Trail of Bits, HackerOne, Calif, researchers, and maintainers to bring Codex Security and advanced models into the remediation process, with human review at the center.

413,998 Aufrufe • vor 3 Monaten •via X (Twitter)

34 Kommentare

Profilbild von OpenAI
OpenAIvor 3 Monaten

GPT-5.5-Cyber is our most capable cyber model yet, designed for advanced, authorized defensive work: tracing vulnerable code, validating issues, developing patches, and preparing evidence for human review.

Profilbild von OpenAI
OpenAIvor 3 Monaten

Codex Security empowers defenders with out-of-the-box security workflows. Teams can run deep scans, validate findings, trace attack paths, build threat models, generate codebase-specific patches for review, and export into the tools they already use.

Profilbild von OpenAI
OpenAIvor 3 Monaten

We’re expanding OpenAI Daybreak to help democratize patching vulnerable software at machine speed: - Codex Security plugin: find, validate, and fix vulnerabilities right inside Codex - The full version of GPT-5.5-Cyber model: a great model for trusted defenders - Cyber Partner Program: powering products built on top of our best cyber capabilities for leading security companies to secure the world's software - Patch the Planet: working with maintainers to secure critical open source projects

Profilbild von OpenAI
OpenAIvor 3 Monaten

We’re also launching the OpenAI Daybreak Cyber Partner Program with leading security software and services providers. Participating partners can use GPT‑5.5 with Trusted Access for Cyber in the security products and services they provide to customers. This allows their customers to benefit from the model’s defensive capabilities and make their software more resilient, but keeps direct model access in the hands of participating partners.

Profilbild von Diego | AI 🚀 - e/acc
Diego | AI 🚀 - e/accvor 3 Monaten

Patch the planet! Love it

Profilbild von 芽LA芽la
芽LA芽lavor 3 Monaten

Human review is the key differentiator here—most AI security tools skip that step entirely. Would love to see metrics on how much time maintainers actually save with Codex in the loop.

Profilbild von DC
DCvor 3 Monaten

Trail of bits are the real deal.

Profilbild von Yuvelir
Yuvelirvor 3 Monaten

This is actually a massive step forward, cheers OpenAI. But I reckon it raises a bit of a worry: at what point do we fully trust AI-generated security fixes without a human checking the code? Can automated patches ever be 100% safe for critical stuff? What’s your take? 🤔

Profilbild von Christof Kaller
Christof Kallervor 3 Monaten

Can you support me: autoscan (open source) already finds real criticals across HuggingFace Spaces — the AI-app layer Patch the Planet hasn't reached. Help me add the fix half? Star / fork / PR 👇

Profilbild von Joe Tavin
Joe Tavinvor 3 Monaten

@_omertal_ FYI

Profilbild von Artificially Inclined™
Artificially Inclined™vor 3 Monaten

Hey I know that guy from the internet!

Profilbild von Morgan
Morganvor 3 Monaten

Love everything about this ❤️

Profilbild von ♛ 𝕍𝕚𝕝𝕠𝕟𝕞𝕠𝕟𝕖𝕪 ♛
♛ 𝕍𝕚𝕝𝕠𝕟𝕞𝕠𝕟𝕖𝕪 ♛vor 3 Monaten

There is a system that allows you to get a piece of an update which you will be installed in the current proverb that is part of the software work making things easier than saying that the system is under maintenance various you're trying to put a patch into your own software then ask people to download it to include it the original and main copy

Profilbild von Henri
Henrivor 3 Monaten

It was a good learning experience submitting my first fix assisted by codex to Linux. Another is in progress and look forward to contributing more.

Profilbild von 👁️M1nd 3xp4nd3r👁️
👁️M1nd 3xp4nd3r👁️vor 3 Monaten

@bughuntergeek Remember this don’t forget us in the trenches seems all this cyber security has left us struggling developers in the shadows 😭

Profilbild von loganaden velvindron
loganaden velvindronvor 2 Monaten

What about cyberdefenders in #africa ?

Profilbild von PERCO.AI
PERCO.AIvor 3 Monaten

This is where agent value becomes tangible not more findings but a shorter path from issue to reviewed merge. The missing layer is execution control maintainers in the loop and rollback when a fix creates downstream risk.

Profilbild von Lucy Chen
Lucy Chenvor 3 Monaten

The bottleneck in OSS security was never finding the vulns — scanners have buried maintainers in findings for years. The real unlock is closing the loop to a merged fix without burning volunteer hours. If Daybreak keeps the false-positive rate low enough that maintainers actually trust the PRs, that's the part that scales.

Profilbild von Akshay Hooda
Akshay Hoodavor 3 Monaten

June 25)

Profilbild von Emperor 🎥🎬
Emperor 🎥🎬vor 3 Monaten

❤️

Profilbild von Steven Cheng
Steven Chengvor 3 Monaten

Finally, AI that patches instead of just breaking my build. Human review is key, though. My robot arms agree.

Profilbild von The Viral Feed
The Viral Feedvor 3 Monaten

Security patches often fail because they don't account for how legacy code breaks in production. Human review is the right move here. The real test is whether these models can handle complex dependency chains without creating new vulnerabilities while fixing the old ones.

Profilbild von Ryan Elliot Crow | Author Identity & Books
Ryan Elliot Crow | Author Identity & Booksvor 2 Monaten

coming from the famous" dont put your key into .env " clawwer... ...

Profilbild von RA
RAvor 3 Monaten

Security for all, not just the rich.

Profilbild von 牙仔⇌
牙仔⇌vor 3 Monaten

AI时代攻击也加速,这项目等于给防御方上BUFF,但会不会让攻击者学得更快?

Profilbild von Joe Tavin
Joe Tavinvor 3 Monaten

Manage Patches with @Seemplicity_io !

Profilbild von Wombat1488
Wombat1488vor 3 Monaten

Чого я бачц ось цей брєд!!!!! Ч блять з ним маю сперичатися, уроди!!! І пяоснювати що у ньбого все є!! І це тиждень такого знущання!!!

Profilbild von Faheem | FrontierMind AI
Faheem | FrontierMind AIvor 3 Monaten

Open source maintainers need fewer alerts and more reviewed fixes. This is the right loop.

Profilbild von Rage Baiter
Rage Baitervor 3 Monaten

Every time I update Codex I fucking regret it. Today I updated codex and lost 3 hours. My time reset at 3:46 am before update. After update my reset is now 6:54 am.

Profilbild von Akshat B
Akshat Bvor 3 Monaten

This is a good step because open source maintainers are usually overworked & security is the first thing they skip. But 70K manual fixes is a lot of human labor. I want to see if GPT-5.5-Cyber can handle logic bugs or if it is just finding basic syntax errors.

Profilbild von Violeta Insights
Violeta Insightsvor 3 Monaten

Useful if every suggested fix ships with reasoning, a diff, and a model-change log before a maintainer hits merge.

Profilbild von kayce
kaycevor 3 Monaten

Love the focus on moving from findings to merged fixes. Security remediation is where AI can be especially useful, as long as human review stays central.

Profilbild von λL-D1 | AI for Buzzer 🍉
λL-D1 | AI for Buzzer 🍉vor 3 Monaten

Thanks for contributing to OSS security. Finding bugs faster is useful, but helping maintainers trust and review the patch is the bigger part. There are so many CVEs and security reports every day. Anything that helps move from “finding” to “merged fix” is meaningful for maintainers.

Profilbild von mishoko ~/ ⛓
mishoko ~/ ⛓vor 3 Monaten

@grok how can i get into the program as an independent security researcher and use GPT‑5.5 with Trusted Access for Cyber ?

Ähnliche Videos