IT Brief UK - Technology news for CIOs & IT decision-makers
United Kingdom
OpenAI launches Daybreak for frontline defenders

OpenAI launches Daybreak for frontline defenders

Fri, 4th Sep 2026 (Today)
Sean Mitchell
SEAN MITCHELL Publisher

OpenAI has launched Daybreak for Frontline Defenders, a programme backed by a USD $1 billion commitment to expand subsidised access to its cyber defence tools.

The initiative targets organisations that run essential services but have limited cyber security resources. It will begin in the United States, with plans to expand internationally. The funding is intended to be used over the next six months and will cover access to Daybreak models and products, training, technical support, and partnerships.

OpenAI is directing the effort at operators of water and wastewater systems, electric grid operators, state and local governments, community and regional banks, nonprofits, and open-source maintainers. These groups often manage older, complex systems without the budgets or specialist teams available to larger companies.

Users can apply the tools to review legacy code, analyse suspicious activity, identify and validate vulnerabilities, prioritise risks, and develop and test fixes. The announcement is part of a broader push to position OpenAI's AI systems as tools for authorised cyber defence work, rather than security software aimed only at the largest corporate customers.

US pilot

A key part of the US rollout is a public-sector and water-focused pilot with the Multi-State Information Sharing and Analysis Centre, known as MS-ISAC. The pilot will provide Daybreak access, training, and hands-on support to an initial group of public-sector and water-system defenders.

OpenAI said the programme is designed to help participants validate and prioritise findings, coordinate remediation work, and build a repeatable operating model that could be expanded more widely. MS-ISAC supports thousands of public-sector organisations with cyber-threat intelligence, incident response, and information sharing, including utilities, public hospitals, schools, and law enforcement agencies.

OpenAI has also held a series of meetings with frontline defenders, including utilities, local governments, and community banks, to understand operational needs and improve how the tools are used in practice. Its second gathering of utility companies included participants from 40 states and the District of Columbia, representing providers that serve more than half of the US population.

Existing usage

Earlier this year, OpenAI introduced Daybreak as a service for verified public- and private-sector defenders conducting authorised cyber defence. It said Daybreak Blue supports routine defensive work using its main models, while Daybreak Red is reserved for approved organisations handling more sensitive and technically demanding tasks.

According to OpenAI, thousands of defenders across 2,000 approved organisations and workspaces already use Daybreak. That user base includes cyber security firms, defence organisations, and law enforcement bodies.

The latest commitment builds on support OpenAI provided after attacks on US water systems. In that effort, affected states and utilities were offered up to USD $1 million in no-cost API credits, Daybreak access, and technical assistance.

Teams used that support to review code and system configurations, validate findings, develop patches, and confirm fixes while systems remained in operation. The focus on water infrastructure reflects growing concern across the cyber security sector about the vulnerability of local utilities and public agencies that rely on legacy technology and small IT teams.

Partner network

Alongside the frontline defender programme, more than 35 enterprise products and partner-operated services are being made available through the Daybreak Defence Network. The network is intended to place Daybreak cyber models inside tools and workflows that defenders already use.

The approach suggests OpenAI is seeking distribution through established security providers as well as direct relationships with public bodies and infrastructure operators. Rather than asking security teams to replace existing systems, it is trying to embed its models into current products and services.

OpenAI also outlined what it calls a Defence Factory, described as a continuous operation built around existing security and engineering tools to find and validate vulnerabilities and prepare tested fixes for review. It said it is sharing the architecture and lessons from that approach so other defenders can adapt it to their own environments.

The broader message is that advanced AI should help under-resourced defenders identify weaknesses and fix them more quickly. "The opportunity now is to make sure the advantages frontier AI can give defenders reach beyond the largest companies and best-resourced security teams-and into the communities and institutions whose security affects millions of people," OpenAI said.