Cloudflare Partners with OpenAI to Enhance AI-Powered Vulnerability Management
New Cloudflare Vulnerability Discovery and Remediation service uses OpenAI Daybreak models to find, block, and fix software vulnerabilities—often before security teams even know there is a problem
Cloudflare, Inc., the leading connectivity cloud company, announced Vulnerability Discovery and Remediation, available in early access through Cloudflare Managed Defense. Through the OpenAI Daybreak Defense Network, the service combines deep code investigation and automated patch generation using OpenAI Daybreak models, including GPT-5.6 Cyber, with real-time traffic and security context from Cloudflare’s global network. Now, organizations can pinpoint high-risk vulnerabilities and automatically block attacks at the edge before they can be exploited.
Software vulnerabilities are being discovered at a record pace, and conventional security tools are not keeping up. By September 2026, the National Vulnerability Database (NVD) had already logged 60,475 vulnerabilities—surpassing the 48,185 total recorded across all of 2025. Traditional vulnerability scanners can surface thousands of findings without enough production context to show which ones deserve attention first. Without that context, teams risk spending their time sorting through noise while real threats slip through unaddressed. The window between when a vulnerability is discovered and when it gets fixed has become one of the most dangerous gaps in enterprise security.
Cloudflare operates one of the world’s largest global networks—processing trillions of requests per day across millions of web assets. While traditional security vendors struggle with isolated code scanning or static network telemetry, Cloudflare can leverage its footprint to detect signals and patterns in real-time that give its threat intelligence team the ability to spot emerging weaknesses and neutralize zero-day exploits long before they hit the broader web.
“If your security team is manually fighting AI-driven attacks, you’re not just burning them out—you’re losing. Now, we’re shifting the defense strategy away from chasing patches one vulnerability at a time to an automated approach,” said Matthew Prince, co-founder and CEO of Cloudflare. “We built Cloudflare’s global network to analyze what’s happening across the Internet in real time. Pair that with the power of OpenAI GPT-5.6 Cyber, and you’re not just reacting to attacks anymore, you’re stopping them before they land.”
By natively integrating AI code analysis directly across its unified platform—spanning Web Assets, WAF, and Workers Observability—Cloudflare enables organizations to move from isolated vulnerability findings toward context-aware prioritization and remediation. Eligible customers can now:
Also Read: IT Tech Pulse Exclusive Interview with Ken Claffey Chief Executive Officer and President of VDURA
- Triage What’s Actively Under Fire: Cloudflare correlates live Internet traffic with code vulnerability scans to rapidly surface high-priority issues without leaving quiet vulnerabilities in the dark.
- Buy Time with Instant Edge Protection: Customers can instruct Cloudflare to deploy custom WAF rules tailored to exact attack vectors, patching vulnerabilities at the edge quickly before developers write a line of code.
- Ship Verified Fixes Faster: OpenAI Daybreak models, including GPT-5.6 Cyber, help generate code patches that developers can easily review and implement, saving engineering teams significant time and effort. No code fix or edge rule takes effect without explicit human approval.
“Our goal through the OpenAI Daybreak Defense Network is to give defenders the advantage of frontier AI, safely,” said McCall McIntyre, Head of Global Cyber Partnerships at OpenAI. “We are excited to team up with Cloudflare to put proactive, AI-driven security directly into the hands of enterprise defenders.”
Write to us [wasim.a@demandmediaagency.com] to learn more about our exclusive editorial packages and programmes.