BTC $77,554.00 -1.82%
ETH $2,421.03 -2.32%
BNB $688.70 -0.56%
XRP $1.35 -3.11%
SOL $99.96 -3.90%
TRX $0.3225 -2.75%
DOGE $0.0817 -2.20%
ADA $0.1985 -1.71%
BCH $248.31 -0.62%
LINK $11.24 -1.99%
HYPE $83.09 -1.27%
AAVE $133.79 +5.72%
SUI $0.7255 -0.92%
XLM $0.1755 -1.85%
ZEC $833.55 -3.41%
BTC $77,554.00 -1.82%
ETH $2,421.03 -2.32%
BNB $688.70 -0.56%
XRP $1.35 -3.11%
SOL $99.96 -3.90%
TRX $0.3225 -2.75%
DOGE $0.0817 -2.20%
ADA $0.1985 -1.71%
BCH $248.31 -0.62%
LINK $11.24 -1.99%
HYPE $83.09 -1.27%
AAVE $133.79 +5.72%
SUI $0.7255 -0.92%
XLM $0.1755 -1.85%
ZEC $833.55 -3.41%
first_img

OpenAI's new model Astra can autonomously discover and exploit software vulnerabilities, rated as "critical" in cybersecurity capability level

2026-09-02 13:31:50

OpenAI stated that its upcoming Astra model can autonomously discover previously unknown software vulnerabilities and convert them into usable attack vectors without human intervention, making it the company's first model to reach the "Critical" cybersecurity capability level threshold. In a blog post released on Tuesday, OpenAI mentioned that according to its Preparedness Framework, reaching this level means the model can discover zero-day vulnerabilities and develop usable exploit code in hardened real systems without human involvement, or design and execute attacks based solely on a high-level objective.

In testing, Astra achieved a 100% score in benchmark tests for developing exploit code based on known vulnerabilities and discovered two previously unknown vulnerabilities in another internal test. Additionally, the model successfully broke through a hardened browser sandbox and executed commands on the host machine, while gaining root access by exploiting multiple weaknesses in the operating system. OpenAI stated that it has delayed some of Astra's development progress to enhance security measures and plans to make its advanced cybersecurity capabilities available only to selected testers.

This capability is particularly relevant to the cryptocurrency industry, as software vulnerabilities can be converted into financial losses within minutes. CoinDesk reported in June that increasingly powerful AI models can compress the process of searching code, discovering misconfigurations, and assembling attacks from days or weeks to machine speed. Security researchers noted at the time that the significant change was not the emergence of new categories of attacks, but rather the dramatically increased speed at which existing vulnerabilities are discovered and exploited.

app_icon
ChainCatcher Building the Web3 world with innovations.