OpenAI says GPT-5.6 Sol and Terra were capable of identifying vulnerabilities but were unable to execute autonomous, end-to-end attacks against hardened targets
GPT-5.6 is a new family of three models: Sol, our new flagship model; Terra, a capable lower-cost option; and Luna, our fastest and most cost-efficient model.
Context & Ripple Effects
GPT-5.6 is being introduced as a three-model lineup: Sol as the flagship, Terra as a lower-cost option, and Luna as the fastest, most cost-efficient model. Related coverage also places the release first in a limited preview with roughly 20 companies and later on a path to broader public availability.
The same coverage says Sol matched Mythos Preview on ExploitBench and gained an Ultra mode using subagents for complex workflows. The security finding therefore matters as a boundary condition on a model family being positioned for deeper reasoning and more multi-step work.
First-order effects
- OpenAI can characterize Sol and Terra as capable of vulnerability discovery while drawing a stated limit: they did not autonomously complete end-to-end attacks against hardened targets.
- Organizations evaluating the models for security or engineering workflows will need to distinguish assisted vulnerability identification from autonomous offensive capability, rather than treating benchmark or reasoning gains as evidence of full attack automation.
Second-order effects
- The finding raises the importance of evaluation criteria that test complete attack chains and hardened environments, not only vulnerability-finding performance or isolated benchmarks such as ExploitBench.
- As GPT-5.6 moves from limited preview toward broader access, enterprise adopters and public-sector reviewers are likely to focus on deployment controls and monitoring around cyber-related uses of the more capable Sol and Terra tiers.
Third-order effects
- If increasingly capable models continue to improve at finding flaws before they can reliably execute full attacks, AI security risk assessment will increasingly turn on the gap between component skills and sustained autonomous operation.
- The three-tier GPT-5.6 rollout suggests capability management may become product-segmented: providers can vary cost, speed, and access while applying more scrutiny to models designed for complex, agent-like workflows.
The trend: This is one data point in the shift from measuring AI cyber capability through isolated tasks toward assessing whether models can reliably chain those capabilities into autonomous real-world operations.