Open Source · Codex · GPT · Calif · OpenAI
Open source software powers products, public services, developer systems, and critical infrastructure across sectors
Compiled by KHAO Editorial — aggregated from 2 sources. See llms.txt for citation guidance.
✓ KHAO Verified
Research from the Linux Foundation and Harvard found that 94 percent of the widely used projects it studied had fewer than ten developers responsible for more than 90 percent of the code added in a year.
Key facts
- On CyberGym, which measures whether an agent can reproduce known vulnerabilities in software environments, the updated GPT‑5.5‑Cyber reached 85.6% in single-model evaluations, compared with 81.8%
- GPT‑5.5‑Cyber also outperformed GPT‑5.5 on two demanding real-world security benchmarks: 39.5% versus 25.95% on ExploitGym, which tests whether agents can turn known vulnerabilities into working
- Since launching Codex Security cloud in research preview in March, it has scanned over 30 million commits across more than 30,000 codebases; human reviewers have manually marked more than 70,000
- Across early Daybreak work, GPT‑5.5 and Codex Security have helped defenders identify and validate vulnerabilities in widely used systems, including Firefox, V8, Safari, OpenBSD, FreeBSD, and HTTP/2
Summary
New tools, partnerships, and the full version of GPT‑5.5‑Cyber to move past vulnerability discovery and onto the acceleration of end-to-end patch automation. They're expanding Daybreak to help democratize patching vulnerable software at machine speed. GPT‑5.5‑Cyber: Following an initial permissive-only preview, they're launching the full version of GPT‑5.5‑Cyber through their continued limited release to trusted defenders. Daybreak Cyber Partner Program : Enabling security partners to scale the benefits to more organizations through their most capable models with trusted access in their products and services. Patch the Planet : an initiative founded with Trail of Bits in collaboration with HackerOne, Calif, researchers, and maintainers to help widely used open-source projects move from findings to fixes. More than 30 open-source projects have committed to participate, with initial participants including cURL, Go, Python, Sigstore, and pyca/cryptography.