OpenAI's GPT-6 Astra becomes the first model to cross the "Critical" cyber-risk threshold
OpenAI's new flagship model hit 100% on ExploitBench and found two real zero-day vulnerabilities during testing, triggering the company's toughest deployment restrictions yet.
The scariest sentence in OpenAI's own paperwork isn't about what the model can write — it's that it found bugs nobody knew existed. If your IT team is still governing AI like it's autocomplete, you're already behind.
LinkedIn carousel: "3 questions to ask your IT lead this week now that AI can find zero-days" — (1) Who in our org can even turn on frontier models like this, and did we say yes on purpose? (2) Do our AI vendor contracts distinguish model version in an audit trail? (3) What's our policy if an AI agent — not a person — is the one that clicked send on a bad transaction?
Source: CSO Online