OpenAI Delays Astra – Model Reaches Critical Cybersecurity Level
OpenAI has postponed parts of the launch for its new model, Astra, after it demonstrated the ability to independently identify vulnerabilities and create cyberattacks.

What happened?
OpenAI has announced that its upcoming AI model, Astra, has reached the threshold for 'Critical cybersecurity capability' according to the company's Preparedness Framework. This means that with the appropriate tools and access, the model can independently discover unknown vulnerabilities and develop exploits against well-protected systems. Consequently, OpenAI has delayed parts of Astra's development and launch to reinforce security safeguards.
Key facts
| Tillkännagivandedatum | 1 september 2026 |
|---|---|
| Modellnamn | Astra |
| Säkerhetsklassificering | Critical cybersecurity capability |
| Ramverk | Preparedness Framework |
”We now believe Astra meets the Critical cybersecurity capability threshold under our Preparedness Framework, meaning that with the right tools and access, it can find previously unknown security flaws and develop ways to exploit them across many well-protected systems.”
”It is the first model we are designating at this level, and requires stronger safeguards during development and before release.”
Why it matters
This is the first time an AI model has been classified at OpenAI's highest risk level for cybersecurity. The discovery highlights the capacity of advanced models to execute complex cyberattacks without human intervention at every stage, necessitating entirely new types of protective mechanisms before commercial access is granted.
Who is affected?
The decision primarily affects security researchers, developers, and organisations monitoring AI safety. For end-users, it means a delayed release of Astra while enhanced safety guardrails are implemented.
Impact on the EU
Not applicable to EU status. Neither restrictions nor specific EU adaptations have been announced for Europe regarding this classification.
What else you should know
This is the first model that OpenAI has classified at the 'Critical' level for cybersecurity. The decision demonstrates how the company's Preparedness Framework functions in practice when security risks are identified during the development phase.
Quick answers about this story
Vad har hänt?
När hände det?
Varför spelar det roll?
Vilka berörs av detta?
The link opens in a new window and leads to the publisher's own site.
Källan har spårats automatiskt från utgivaren via Aheadlines signalkedja.
AI-verktyg i artikeln
Topics
Get similar news straight to your inbox
The reader's room
Send in a question or an addition. The newsroom reads everything before it's published and replies when relevant. No AI-generated text – just people.
Sign in to submit a comment or question.
Read the article through your role
- Decide whether this affects strategy over 6–12 months or is just noise.
- Discuss with leadership: do we own the right question or does ownership need to move?
- Ask: what risk are we taking by NOT acting on this this quarter?
Generated angle — not editorial analysis of "OpenAI Delays Astra – Model Reaches Critical Cybersecurity L"