An open letter for a global surge in cyber defense
- 原文链接: https://x.com/gdb/status/2093021551855812842
- 作者: Greg Brockman (@gdb)
- 日期: 2026-08-27
- 分类: industry
- 来源类型: x_post
- 标签: ai-safety, cybersecurity, open-letter, industry, policy
- 质量评分: 5/5
- 抓取时间: 2026-08-28T23:55:00+08:00
中文导读
8 月 27 日 OpenAI 联创 Greg Brockman 把一封由 Anthropic、AWS、Google、Microsoft、OpenAI、Oracle 等 100+ 家组织联名的《全球加码网络防御公开信》转上 X。信给出三条原则:当前安全水位扛不住未来几个月由更强模型驱动的攻击,关键基础设施都在射程内;防御必须上 AI,把分散在各团队的工具和修复经验共享出来;这是全球动员,单家公司不该独占未来。落到组织的清单包括优先修最高危漏洞、独立验证修复结果、把 AI 写的代码纳入安全验收,缺钱的关键基础设施由前沿实验室提供工具与现场支持。签名厂商的能力方与防御方身份重合,他们主动要求监管与公共资金介入,比过往姿态更实际,但能否从联名变成动作要看未来几个月的跟进。
为什么值得关注
签名构成(能力方=防御方)让这封信的分量不同于常规行业联名;对 AI 安全支出、监管介入节奏的判断可直接引用。
原文(抓取存档·节选)
---
title: "An open letter for a global surge in cyber defense"
author: "Greg Brockman (@gdb)"
date: 2026-08-27
source_url: https://x.com/gdb/status/2093021551855812842
captured_at: "2026-08-28 1249 +08:00"
---
# An open letter for a global surge in cyber defense
# X
> 发布时间: 2026-08-27T17:03:19.000Z
> 原文链接: https://x.com/gdb/article/2093021551855812842
---
[
](https://x.com/gdb/article/2093021551855812842/media/2093016946476449792)
A call for collective action on cyber defense
[
](https://x.com/gdb)
[
Greg Brockman
](https://x.com/gdb)
[
@gdb
](https://x.com/gdb)
11h
282
805
3.1K
[
726K
](https://x.com/gdb/status/2093021551855812842/analytics)
An open letter for a global surge in cyber defense, signed by over 100 organizations including Anthropic, AWS, Google, Microsoft, OpenAI, and Oracle.
We have a limited window to strengthen cyber defenses.
In the coming months, AI-enabled cyber attacks will become far more widespread and sophisticated as models around the world become increasingly capable. The companies and public services our communities depend on — from hospitals to water treatment plants to the infrastructure that powers the internet — are at risk.
Today’s AI advances are already giving defenders new ways to fix weaknesses that have accumulated for years. If we act decisively, we can use the defenders’ window to make our digital world much more secure.
We propose the following principles for a collective response:
- Recognize that status quo security won’t be enough. Longstanding bugs, excessive permissions, misconfigurations, insecure and unpatched software, weak authentication, and technical debt in legacy systems have left systems exposed. Security teams, particularly for critical infrastructure, have been historically under-resourced and need a surge in tools and resources.
- Empower more defenders with cyber-capable AI. AI brings specialist skills to more defenders and makes core security tasks faster, cheaper and better. Sharing tools, practical knowledge, and verified fixes lets one organization’s work help protect many others.
- Mobilize a collective response. Cyber capabilities are advancing worldwide, and that can be a net positive: no single company should control the future. It also means a global response is necessary, requiring new partnerships to raise security standards and find new solutions to emerging cyber threats.
Each of us can reduce risk now. All organizations, cybersecurity companies, technology partners, governments, and AI frontier companies have an important role: accelerate defenders’ priorities with tools, funding, and hands-on support, especially for critical infrastructure organizations with limited budgets.
Here’s what we think needs to happen next:
##
01 Every organization
Make cyber defense an immediate leadership priority. Raise your security standards and meet them with the urgency and coordination of an incident that takes precedence over everything except critical business operations. Fix the highest-risk weaknesses, verify results without disrupting essential services, and raise the security bar for what you buy, build, and deploy, including AI-generated code. Upgrade or replace systems to build in least privilege, strong access controls, and defense in depth. Use capable, lower-cost models for broad coverage, and apply frontier capabilities to the hardest problems. Where a system cannot be patched without disrupting essential services, apply and verify compensating controls.
##
02 Cybersecurity companies and technology partners
Help lead the response to defend against sustained AI-enabled attacks, including testing defenses continuously against frontier cyber capabilities, strengthening existing tools with AI, and working with technology partners to close gaps now. Make AI-powered defense accessible and deployable for critical-infrastructure operators, with hands-on help to deploy tools and verify fixes, and collaborate with critical infrastructure supply chain manufacturers and system integrators to patch and issue interim guidance. Share threat intelligence and tested playbooks, and measure progress by how many organizations are protected, how quickly attacks are contained, and whether fixes work.
##
03 Governments
Coordinate cyber defense at local, national, and international levels. Strengthen existing government and industry channels to share actionable threat intelligence, prioritize the most serious risks, and coordinate incident response and recovery around the world. Fund cyber defense, starting with essential services that lack the staff or budget to act. Expedite the expansion of trusted access programs, especially for critical infrastructure supply chains, and broaden access to defensive capabilities for other defenders. Give hospitals, water utilities, and local governments access to capable defensive AI, authorized testing, and hands-on support through trusted security providers and partners. Impose costs on attackers.
##
04 Frontier AI companies
Provide responsible model access, significant funding, training, and hands-on support, especially for under-resourced critical-infrastructure defenders. Build observability and security tools, ensure agentic identities are traceable and accountable, and share best practices in continuous monitoring. Invest in authorized testing, private disclosure, and verified fixes, and share tools, playbooks, and credible threat assessments with governments, security partners, and open-source maintainers to strengthen preparedness, response, and recovery.
We can make the digital infrastructure we all depend on more secure.
We call on leaders across industry and government to bring the full weight of their technology, resources, and expertise to this effort. Put cyber-capable AI in the hands of defenders, starting with the teams protecting essential services. Fix the most dangerous weaknesses, verify the fixes, and share what works so others can build on it. Together, we can turn today’s AI advances into lasting improvements in security that benefit everyone. Let’s put them to work.
[https://openai.com/collective-cyberdefense](https://openai.com/collective-cyberdefense)
- [
](https://x.com/gdb)
[
Greg Brockman
](https://x.com/gdb)
[
@gdb
](https://x.com/gdb)
Following
Click to Unfollow gdb
President & Co-Founder
[@OpenAI](https://x.com/OpenAI)
本地备份
- Obsidian 源文件:
X 文章/2026-08-28-1249-GregBrockman-open-letter-cyber-defense.md