Technology

Cloudflare and OpenAI bring AI into vulnerability discovery workflows

A new managed-defense effort uses OpenAI models to help identify and remediate vulnerabilities, putting human-led security operations around AI assistance.

A code review panel with an AI-assisted vulnerability fix marked as verifiedA code review panel with an AI-assisted vulnerability fix marked as verified

Cloudflare announced a Managed Defense service that uses OpenAI’s Daybreak models to assist with vulnerability discovery and remediation. The announcement frames the models as part of a security workflow, rather than a replacement for the analysts and engineering teams who validate findings and implement fixes.

AI could help defenders sift code and prioritize potential weaknesses more quickly, but security findings need careful verification. False positives consume scarce response time; false negatives can leave real exposure untouched. The useful measure will be whether the combined process improves safe fixes in production, not simply how many issues a model can surface.

From discovery to a safe fix

Finding a flaw is only one step. Teams need reproducible evidence, severity context, a patch that does not break software and a way to confirm the issue is closed. Managed services can provide a structured path through that work, while customers still need clear ownership and change controls.

A broader defensive trend

Security vendors are increasingly adding AI to triage, code analysis and response. The strongest deployments will make outputs auditable, keep humans accountable for consequential changes and measure outcomes such as remediation time and recurrence.

Sources

CloudflareOpenAIVulnerability research
FD

Written by

Fieldnote DeskTechnology brief at Fieldnote
About the editors