Загрузка видео...

Не удалось загрузить видео

На главную

Patch the Planet is our effort to help open source maintainers move from security findings to merged fixes. We’re working with Trail of Bits, HackerOne, Calif, researchers, and maintainers to bring Codex Security and advanced models into the remediation process, with human review at the center.

413,998 просмотров • 3 месяцев назад •via X (Twitter)

Комментарии: 34

Фото профиля OpenAI
OpenAI3 месяцев назад

GPT-5.5-Cyber is our most capable cyber model yet, designed for advanced, authorized defensive work: tracing vulnerable code, validating issues, developing patches, and preparing evidence for human review.

Фото профиля OpenAI
OpenAI3 месяцев назад

Codex Security empowers defenders with out-of-the-box security workflows. Teams can run deep scans, validate findings, trace attack paths, build threat models, generate codebase-specific patches for review, and export into the tools they already use.

Фото профиля OpenAI
OpenAI3 месяцев назад

We’re expanding OpenAI Daybreak to help democratize patching vulnerable software at machine speed: - Codex Security plugin: find, validate, and fix vulnerabilities right inside Codex - The full version of GPT-5.5-Cyber model: a great model for trusted defenders - Cyber Partner Program: powering products built on top of our best cyber capabilities for leading security companies to secure the world's software - Patch the Planet: working with maintainers to secure critical open source projects

Фото профиля OpenAI
OpenAI3 месяцев назад

We’re also launching the OpenAI Daybreak Cyber Partner Program with leading security software and services providers. Participating partners can use GPT‑5.5 with Trusted Access for Cyber in the security products and services they provide to customers. This allows their customers to benefit from the model’s defensive capabilities and make their software more resilient, but keeps direct model access in the hands of participating partners.

Фото профиля Diego | AI 🚀 - e/acc
Diego | AI 🚀 - e/acc3 месяцев назад

Patch the planet! Love it

Фото профиля 芽LA芽la
芽LA芽la3 месяцев назад

Human review is the key differentiator here—most AI security tools skip that step entirely. Would love to see metrics on how much time maintainers actually save with Codex in the loop.

Фото профиля DC
DC3 месяцев назад

Trail of bits are the real deal.

Фото профиля Yuvelir
Yuvelir3 месяцев назад

This is actually a massive step forward, cheers OpenAI. But I reckon it raises a bit of a worry: at what point do we fully trust AI-generated security fixes without a human checking the code? Can automated patches ever be 100% safe for critical stuff? What’s your take? 🤔

Фото профиля Christof Kaller
Christof Kaller3 месяцев назад

Can you support me: autoscan (open source) already finds real criticals across HuggingFace Spaces — the AI-app layer Patch the Planet hasn't reached. Help me add the fix half? Star / fork / PR 👇

Фото профиля Joe Tavin
Joe Tavin3 месяцев назад

@_omertal_ FYI

Фото профиля Artificially Inclined™
Artificially Inclined™3 месяцев назад

Hey I know that guy from the internet!

Фото профиля Morgan
Morgan3 месяцев назад

Love everything about this ❤️

Фото профиля ♛ 𝕍𝕚𝕝𝕠𝕟𝕞𝕠𝕟𝕖𝕪 ♛
♛ 𝕍𝕚𝕝𝕠𝕟𝕞𝕠𝕟𝕖𝕪 ♛3 месяцев назад

There is a system that allows you to get a piece of an update which you will be installed in the current proverb that is part of the software work making things easier than saying that the system is under maintenance various you're trying to put a patch into your own software then ask people to download it to include it the original and main copy

Фото профиля Henri
Henri3 месяцев назад

It was a good learning experience submitting my first fix assisted by codex to Linux. Another is in progress and look forward to contributing more.

Фото профиля 👁️M1nd 3xp4nd3r👁️
👁️M1nd 3xp4nd3r👁️3 месяцев назад

@bughuntergeek Remember this don’t forget us in the trenches seems all this cyber security has left us struggling developers in the shadows 😭

Фото профиля loganaden velvindron
loganaden velvindron2 месяцев назад

What about cyberdefenders in #africa ?

Фото профиля PERCO.AI
PERCO.AI3 месяцев назад

This is where agent value becomes tangible not more findings but a shorter path from issue to reviewed merge. The missing layer is execution control maintainers in the loop and rollback when a fix creates downstream risk.

Фото профиля Lucy Chen
Lucy Chen3 месяцев назад

The bottleneck in OSS security was never finding the vulns — scanners have buried maintainers in findings for years. The real unlock is closing the loop to a merged fix without burning volunteer hours. If Daybreak keeps the false-positive rate low enough that maintainers actually trust the PRs, that's the part that scales.

Фото профиля Akshay Hooda
Akshay Hooda3 месяцев назад

June 25)

Фото профиля Emperor 🎥🎬
Emperor 🎥🎬3 месяцев назад

❤️

Фото профиля Steven Cheng
Steven Cheng3 месяцев назад

Finally, AI that patches instead of just breaking my build. Human review is key, though. My robot arms agree.

Фото профиля The Viral Feed
The Viral Feed3 месяцев назад

Security patches often fail because they don't account for how legacy code breaks in production. Human review is the right move here. The real test is whether these models can handle complex dependency chains without creating new vulnerabilities while fixing the old ones.

Фото профиля Ryan Elliot Crow | Author Identity & Books
Ryan Elliot Crow | Author Identity & Books2 месяцев назад

coming from the famous" dont put your key into .env " clawwer... ...

Фото профиля RA
RA3 месяцев назад

Security for all, not just the rich.

Фото профиля 牙仔⇌
牙仔⇌3 месяцев назад

AI时代攻击也加速,这项目等于给防御方上BUFF,但会不会让攻击者学得更快?

Фото профиля Joe Tavin
Joe Tavin3 месяцев назад

Manage Patches with @Seemplicity_io !

Фото профиля Wombat1488
Wombat14883 месяцев назад

Чого я бачц ось цей брєд!!!!! Ч блять з ним маю сперичатися, уроди!!! І пяоснювати що у ньбого все є!! І це тиждень такого знущання!!!

Фото профиля Faheem | FrontierMind AI
Faheem | FrontierMind AI3 месяцев назад

Open source maintainers need fewer alerts and more reviewed fixes. This is the right loop.

Фото профиля Rage Baiter
Rage Baiter3 месяцев назад

Every time I update Codex I fucking regret it. Today I updated codex and lost 3 hours. My time reset at 3:46 am before update. After update my reset is now 6:54 am.

Фото профиля Akshat B
Akshat B3 месяцев назад

This is a good step because open source maintainers are usually overworked & security is the first thing they skip. But 70K manual fixes is a lot of human labor. I want to see if GPT-5.5-Cyber can handle logic bugs or if it is just finding basic syntax errors.

Фото профиля Violeta Insights
Violeta Insights3 месяцев назад

Useful if every suggested fix ships with reasoning, a diff, and a model-change log before a maintainer hits merge.

Фото профиля kayce
kayce3 месяцев назад

Love the focus on moving from findings to merged fixes. Security remediation is where AI can be especially useful, as long as human review stays central.

Фото профиля λL-D1 | AI for Buzzer 🍉
λL-D1 | AI for Buzzer 🍉3 месяцев назад

Thanks for contributing to OSS security. Finding bugs faster is useful, but helping maintainers trust and review the patch is the bigger part. There are so many CVEs and security reports every day. Anything that helps move from “finding” to “merged fix” is meaningful for maintainers.

Фото профиля mishoko ~/ ⛓
mishoko ~/ ⛓3 месяцев назад

@grok how can i get into the program as an independent security researcher and use GPT‑5.5 with Trusted Access for Cyber ?

Похожие видео