AI research and deployment company OpenAI is committing US$1 billion to its Daybreak for Frontline Defenders initiative to expand subsidized access to frontier AI cyber capabilities, training, technical support and partnerships for frontline defenders protecting essential services in the U.S. and globally.
“Daybreak for Frontline Defenders brings together $1 billion in subsidized access to frontier cyber capabilities, hands-on training and technical assistance, and new partnerships to get those capabilities to organizations that protect the services people depend on every day,” OpenAI said in a statement last week. “We are starting where the gap is greatest: with defenders carrying enormous responsibility without the resources of the world’s largest companies. Our goal is to build a model that can protect the services Americans rely on and, with our partners, help put frontier cybersecurity in the hands of frontline defenders around the world.”
Daybreak for America brings together all of OpenAI’s U.S. work to protect the systems Americans rely on every day, from water and electricity to local government and banking, including a new pilot with the Multi-State Information Sharing and Analysis Center (MS-ISAC). The Daybreak Defense Network brings Daybreak cyber models into over 35 enterprise products and partner-operated services, integrating them into tools, services, and workflows enterprise defenders already use.
As part of the ‘Daybreak for America’ commitment, priority will be given to operators of essential services, including water and wastewater systems and electric grid operators, alongside state and local governments, community and regional banks, nonprofits, open-source maintainers, and other organizations with limited security resources. Many of these teams defend complex and often aging systems against faster-moving threats without the budgets, tools, or specialized expertise available to large enterprises.
Daybreak access can help these organizations review legacy code, analyze suspicious activity, identify and validate vulnerabilities, prioritize serious risks, and develop and test fixes. In the coming weeks, this model is intended to expand to partner countries.
“This commitment builds on support already provided to infrastructure defenders facing urgent threats,” the post detailed. “Following recent attacks on U.S. water systems, we offered affected states and utilities up to $1 million in no-cost API credits, Daybreak access, and technical assistance. Teams were able to use that support to review code and system configurations, validate findings, develop patches, and confirm fixes while water systems remained operational and communities continued receiving the services they depended on.”
OpenAI also convened an ongoing series of meetings with frontline defenders, including utilities, state and local governments, community banks, and others, to learn from their work and support the use of tools to harden their systems. Those convenings will continue as Daybreak for Frontline Defenders expands. This week’s second gathering of utility companies brought together participants representing 40 states and the District of Columbia that collectively provide essential services to more than half of the U.S. population.
MS-ISAC provides cyber-threat intelligence, incident-response support, real-time information sharing, and other shared defenses to thousands of public-sector organizations, including utilities, public hospitals, K–12 schools, and law-enforcement agencies. Its members protect systems central to Americans’ daily lives, from drinking water and public hospitals to schools, emergency services, and local governments. The pilot aims to develop a model that could ultimately benefit organizations across this broader community.
“Support also needs to reach defenders through the tools and services they already use,” OpenAI observed. “Today, our partners across the Daybreak Defense Network are announcing more than 35 partner products and partner-operated services that bring OpenAI’s Daybreak cyber models into the hands of the enterprise. Our goal is collective action becoming operational, with products, services, and workflows defenders can use. Ultimately, the goal is not just to find more vulnerabilities, but to fix them faster.”
OpenAI also published its approach to building a Defense Factory, a continuous, agent-first operation, building on existing security and engineering tools to find and validate vulnerabilities and prepare tested fixes for review. We are sharing its architecture and lessons so other defenders can adapt the approach to their own environments.
The announcement also underscored that the defender’s window will not stay open indefinitely. The opportunity now is to ensure that the advantages frontier AI can provide to defenders extend beyond the largest companies and best-resourced security teams to the communities and institutions whose security affects millions of people.
“That means more than providing access to capable models,” the post added. “It means helping frontline defenders—water utilities, community banks, health systems, local governments—find vulnerabilities, turn them into tested fixes, and protect those they serve. Daybreak for Frontline Defenders is our commitment to putting that capability in the hands of the frontline defenders who need it most. Our goal is to use frontier AI to make the systems Americans depend on harder to attack and easier to repair.”
Commenting on the Daybreak for Frontline Defenders initiative, Jacob Krell, senior director for secure AI solutions and cybersecurity at Suzu Labs, wrote in an emailed statement that while he liked the direction, he is skeptical about the bottleneck it targets. “I’ve been saying since GPT-5.6-Cyber launched that AI is moving the bottleneck from vulnerability discovery to remediation. Small water systems and municipal networks already know they’re running outdated systems with known vulnerabilities. They lack the engineering staff to fix what they find, the governance to deploy changes safely, and the test environments to validate fixes before production.”
Krell mentioned that Greg Brockman demoed Codex on his personal website at the summit. “A personal website isn’t a water treatment Supervisory Control and Data Acquisition (SCADA) system, where a configuration change that makes security sense can break the physical process that keeps water flowing. Without engineers who understand the plant, AI becomes a force accelerant in the wrong direction, generating fixes faster than understaffed teams can review them.”
He added that “The Multi-State Information Sharing and Analysis Center (MS-ISAC) training pilot matters more than the $1 billion headline. If that training doesn’t scale alongside the credits, these organizations end up with an AI generating recommendations and nobody qualified to tell the good fixes from the dangerous ones.”
“OpenAI is jumping on the bandwagon to help utilities,” Joshua Marpet, senior product security consultant at Finite State, wrote in an emailed statement. “Considering that there are over 150k water utilities in this country, and there are only several hundred in the Water-ISAC (Information Sharing and Analysis Center), there’s a huge gap in the cybersecurity preparedness posture for those utilities.”
He added that “Programs like Josh Corman’s Undisruptable27, the new Texas Water coalition, ValueChainRisk’s Utility Kit, and others are all working to help these utilities, with free or discounted products, services, and guidance. In other words, this is a wonderful project for OpenAI to do, but since it’s partly their fault. Probably good optics as well.”
“Understanding your cybersecurity and physical security posture is important,” according to Marpet. “For small water utilities, often mom-and-pop shops with little time, effort, or money to spare for such items, finding and utilizing these free or discounted resources is essential to their survival on the increasingly hostile world stage.”
Last week, OpenAI and a group of technology and cybersecurity organizations launched a collective cyber defense initiative calling for coordinated global action to protect essential services from increasingly sophisticated AI-enabled attacks. These organizations face rising risks, while persistent vulnerabilities continue to expose critical systems. The initiative assigns clear responsibilities: organizations should make defense a leadership priority and address high-risk weaknesses, while cybersecurity companies should continuously test defenses, share threat intelligence, and deploy AI-powered solutions.


