Skip to content
goppo

News · AI summarised to understand what matters

Back to news

Models

Published on

OpenAI launches Astra with advanced cybersecurity capabilities

OpenAI has launched Astra, a new model with advanced computer-use, coding, and cybersecurity capabilities. It arrives with stronger safeguards, but also with new challenges for monitoring how it reasons.

  • openai
  • astra
  • ciberseguranca
  • modelos
  • seguranca

Summary

OpenAI has launched Astra, which the company describes as its most capable model to date. The system is designed to perform tasks on computers and browsers, write software, and support cybersecurity work. The same capabilities that may help find vulnerabilities also increase the risk of misuse.

In practice

Astra can work in digital environments, answer questions about codebases, execute terminal tasks, and identify security flaws. OpenAI says it can help defenders find and patch vulnerabilities, including previously unknown flaws.

Access is being phased in. The most advanced cybersecurity capabilities will initially be limited to testers and Daybreak. The model is expected to reach paid Pro, Plus, Enterprise, and Business plans, as well as the API, during the week after launch.

Context

OpenAI says Astra has reached the “Critical” level of its Preparedness Framework for cybersecurity capabilities. In the company’s tests, it found previously unknown vulnerabilities and built exploit chains in hardened environments. These results are not independent validation, and some reflect Daybreak Blue access rather than the default production configuration.

The company has added refusals, classifiers, monitoring, and mechanisms to interrupt potentially unauthorized actions. TechCrunch also highlights a technique called “opaque recurrence”, which makes the model’s decision-making process less observable. OpenAI acknowledges that monitoring becomes harder as models grow more capable.

Why it matters

  • Astra brings models closer to tasks that directly involve computers and systems.
  • The same capability could accelerate cyber defense or increase the risk of abuse.
  • Models must also be shown to remain controllable and auditable.