OpenAI has unveiled a new cybersecurity-focused program called “Patch the Planet,” aimed at strengthening the safety of open source software through a combination of artificial intelligence tools and expert human review. The announcement was made on Monday, highlighting a growing concern over vulnerabilities in widely used open source projects that power much of today’s digital infrastructure.
The initiative is being developed in partnership with the well-known security firm Trail of Bits. Under the program, security engineers from Trail of Bits will work directly with open source maintainers to identify, analyze, and resolve potential code vulnerabilities before they escalate into larger security risks.
OpenAI also confirmed that its internal security technologies, including Codex Security, will play a supporting role in scanning and assisting with bug detection. According to the company, the goal is to ease the pressure on open source maintainers who are often overwhelmed by the volume of security reports and lack sufficient resources to address them quickly.
Instead of simply flooding developers with findings, “Patch the Planet” is designed to act as a guided support system. Security experts will review issues before they reach maintainers, help develop fixes and testing frameworks, and create reusable workflows that improve long-term project security. OpenAI described the effort as a way to “reduce burden, not add to it.”
The move comes at a time when concerns around software security are increasing, especially after major incidents like the Log4j vulnerability exposed how a single flaw in open source code can ripple across global systems. While the initiative is being praised for its potential impact, questions remain about its scalability and long-term execution as AI-driven cybersecurity tools continue to evolve.
source: techcrunch
