Cloudflare has launched Vulnerability Discovery and Remediation, a solution available in early access through Cloudflare Managed Defense. Through the OpenAI Daybreak Defense Network, this service combines deep code investigation and automated patch generation using OpenAI Daybreak models, including GPT-5.6 Cyber, with the real-time traffic and security context of Cloudflare’s global network. From now on, organizations can accurately identify high-risk vulnerabilities and automatically block attacks at the edge before they can be exploited.

Software vulnerabilities are being discovered at a record pace and conventional security tools are falling behind. As of September 2026, the National Vulnerability Database (NVD) had already recorded 60,475 weaknesses, surpassing the total of 48,185 recorded throughout 2025. Traditional vulnerability scanners can detect thousands of findings without providing enough context to determine which ones require priority attention. Without that context, teams risk wasting time filtering out the noise while real threats go unnoticed. The time it takes from when a vulnerability is discovered to when it is fixed has become one of the most dangerous gaps for corporate security.

Cloudflare allows you to neutralize zero-day exploits

Cloudflare operates one of the largest global networks in the world, processing billions of requests a day across millions of web assets. While traditional security vendors struggle with isolated code scanning or static network telemetry, Cloudflare leverages its scale to detect signals and patterns in real time. This gives your threat intelligence team the ability to identify emerging vulnerabilities and neutralize zero-day exploits long before they impact the widespread web.

“If your security team manually combats AI-powered attacks, you’re not just exhausting them, you’re losing. Now we’re shifting the defense strategy from hunting for vulnerability patches to an automated approach,” said Matthew Prince, co-founder and CEO of Cloudflare. “We designed Cloudflare’s global network to analyze what’s happening on the Internet in real time. Combine this with the power of OpenAI’s GPT-5.6 Cyber, and you’re no longer just reacting to attacks — you’re stopping them before they happen.”

By natively integrating AI code analysis directly into its unified platform—spanning Web Assets, WAF, and Workers Observability—Cloudflare enables organizations to evolve from identifying isolated vulnerabilities to context-aware prioritization and remediation. Eligible customers can now:

Prioritize systems under active attack: Cloudflare correlates live Internet traffic with code vulnerability scans to quickly identify high-priority issues, preventing unexploited vulnerabilities from diverting the attention of security teams.

Save time with instant edge protection: Customers can tell Cloudflare to deploy custom WAF rules tailored to their exact attack vectors, quickly patching the edge before developers write a single line of code. In this way, it is possible to reduce the exposure window associated with the most critical vulnerabilities.

Deploy verified fixes faster: OpenAI Daybreak models, including GPT-5.6 Cyber, help generate code patches that developers can easily review and deploy, saving engineering teams significant time and effort. No code fixes or rules at the edge are applied without explicit human approval.

“Our goal through the OpenAI Daybreak Defense Network is to safely give defensive teams the advantage of cutting-edge AI,” said McCall McIntyre, Global Head of Cybersecurity Alliances at OpenAI. “We are thrilled to partner with Cloudflare to put proactive, AI-driven security directly in the hands of corporate defenders.”