Gemini 3.8 Flash Cyber inherits Gemini 3.8 Flash's 1,048,576-token context window and 65,536-token output ceiling, succeeding the July 21, 2026 Gemini 3.5 Flash Cyber pilot. It replaces CodeMender's invite-only rollout with the named Fairwind Program, where more than 650 partner organizations already have prioritized access.
Gemini 3.8 Flash Cyber is Google DeepMind's cybersecurity fine-tune of Gemini 3.8 Flash, released September 2, 2026, scoring 86.2% Pass@1 on CyberGym and exceeding 70% success across 20 programming languages. Access is restricted to vetted defenders through Google's Fairwind Program, not a public API.
Provider: Google DeepMind · Family: Gemini 3.8
More about Google DeepMind on HokAI
Context window: 1,048,576 tokens · Max output: 65,536
Input modalities: text, code · Output: text, code
About Gemini 3.8 Flash Cyber
Gemini 3.8 Flash Cyber is Google DeepMind's dedicated cybersecurity fine-tune of Gemini 3.8 Flash, announced September 2, 2026 alongside the general-purpose Gemini 3.8 Flash release. It shares the same sparse Mixture-of-Experts Transformer foundation as mainline 3.8 Flash, Google describes both as "powered by the same foundational intelligence," and it is the second model in the Cyber lineage, succeeding Gemini 3.5 Flash Cyber from July 21, 2026. Its job is narrow: find, validate, and patch security vulnerabilities across real codebases, not general chat or reasoning. On CyberGym, the industry benchmark for autonomous vulnerability discovery, it scores 86.2% Pass@1, ahead of its own predecessor and larger frontier models, per Google DeepMind's model page. On Google's internal cross-language vulnerability discovery benchmark spanning 20 programming languages, it exceeds a 70% success rate at 71.0%. For patch generation, it scores 47.2% Pass@1 on CWE-Bench, meaning nearly half its proposed fixes resolve the underlying weakness rather than just flag it. It inherits Gemini 3.8 Flash's 1,048,576-token context window and 65,536-token max output, enough to hold a large monorepo or a long commit history in a single scanning pass, per Google DeepMind's published specifications for the shared base architecture. The primary input surface is code across 20 programming languages, plus text, with output as text (vulnerability reports) and code (patches). It inherits tool use, function calling, and structured output from the base architecture, but Google's model card does not advertise the image, video, or audio ingestion mainline Gemini 3.8 Flash offers, since the Cyber variant's scope is scanning code, not media. There is no public per-token pricing. Access runs entirely through Google's Fairwind Program, an application-based enrollment for government authorities, critical infrastructure operators, and software maintainers. Google reported more than 650 partner organizations already onboarded at launch, spanning healthcare, telecommunications, energy, and finance, plus technology platforms that maintain broad software foundations. There is no self-serve API key, AI Studio quota, or Vertex AI listing for the Cyber variant, unlike mainline Gemini 3.8 Flash. Enrollment happens through deepmind.google/fairwind-program; approved partners get prioritized access rather than a standalone SDK or public endpoint. The model ships with a more permissive set of cyber-offense mitigations than mainline Gemini 3.8 Flash, a tradeoff Google states is the reason access stays gated: the same technique that finds a vulnerability can produce a working exploit for it. It is evaluated under Google's Frontier Safety Framework, which flags the Gemini 3 series at the cyber capability alert threshold and triggers additional domain-specific testing before release. Gray Swan's independent prompt-injection benchmark measured a 6.0% attack success rate against it, an improvement Google attributes to the broader 3.8 generation. Real-world validation backs the benchmarks: Chrome Security measured 2.6 times more correct patches than the best commercial models of larger size. Wiz reported 7.5 to 9.7 percentage points higher recall on its penetration-testing benchmark, at 2.3 to 5.2 times lower cost. Google Cloud's Vulnerability Research team found a critical foundational vulnerability in under two hours, a task that typically takes months. Teams without Fairwind access, or needing a general coding assistant, should use mainline Gemini 3.8 Flash instead. Training cutoff is inherited from the shared 3.8 Flash base at March 2026. Google has not published a data retention or training policy specific to the Cyber variant; given the per-partner vetting, terms are likely negotiated per organization, matching the precedent set with the 3.5 Flash Cyber pilot. It succeeds Gemini 3.5 Flash Cyber, gated through CodeMender since July 21, 2026. The shift from that invite-only framing to the named Fairwind Program, with a public application page and 650-plus onboarded partners, signals Google broadening access to the Cyber lineage even as the model stays gated to vetted defenders.
Pricing
Google has not published per-token pricing for this model. There is no self-serve API; access requires a reviewed application through the Fairwind Program at deepmind.google/fairwind-program, limited to vetted government agencies, infrastructure operators, and software-maintenance organizations.
Key Features
- CyberGym-Leading Vulnerability Discovery: Leads Google's disclosed industry benchmark for autonomous vulnerability discovery, ahead of both its predecessor and frontier models larger than itself.
- Cross-Language Vulnerability Coverage: Extends discovery across a broad, Google-disclosed set of programming languages in a single internal benchmark, the widest cross-language scope published for the Cyber lineage.
- Validated Patch Generation: Scores 47.2% Pass@1 on CWE-Bench for producing patches that resolve the underlying weakness rather than just flagging it.
- 1M-Token Context Inherited From Base 3.8 Flash: Carries the full 1,048,576-token window over from the shared Gemini 3.8 Flash base, room for a complete monorepo snapshot or a deep commit-history scan without truncation.
- Fairwind Program Gated Access: Available only to vetted applicants across government, critical-infrastructure, and software-maintenance roles who apply through Google's Fairwind Program; a wave of partner organizations were onboarded at launch.
Pros
- Real-world results are corroborated by three separate teams (Google's own Chrome Security group, the external platform Wiz, and Google Cloud's Vulnerability Research unit), not only Google's internal synthetic benchmarks.
- Wiz's own penetration-testing benchmark reported higher recall at meaningfully lower cost than its prior approach, independent validation beyond Google's own numbers.
- Patch quality is graded on whether a fix actually resolves the underlying weakness (CWE-Bench Pass@1), not just whether a bug gets flagged.
- Cross-codebase coverage broadened noticeably from the JavaScript-focused Gemini 3.5 Flash Cyber predecessor, based on Google's own published testing scope.
Cons
- No public pricing or self-serve API; every credential requires a reviewed Fairwind Program application, which rules it out for teams that need access today.
- Google has not disclosed general-purpose benchmark scores (GPQA, MMLU-Pro, SWE-bench Verified) for the Cyber fine-tune, so buyers cannot directly compare it to mainline frontier models outside cyber-specific evals.
- Ships with more permissive cyber-offense mitigations than mainline Gemini 3.8 Flash, which is why Google restricts it to vetted defenders instead of shipping it broadly.
Benchmarks
- cybergym pass at 1: 86.2
- cwe bench pass at 1: 47.2
- gray swan ipi attack success rate: 6
- real world vuln discovery 20 languages pct: 71
Frequently Asked Questions
What does Gemini 3.8 Flash Cyber cost to run?
Google has not published per-token pricing for Gemini 3.8 Flash Cyber. There is no self-serve API or AI Studio quota; access requires an approved Fairwind Program application, so there is nothing to compare against mainline Gemini 3.8 Flash's public $0.75/$3.75 per-million-token rate.
How does Gemini 3.8 Flash Cyber compare to Gemini 3.5 Flash Cyber and other cybersecurity models?
It improves on its own predecessor with an 86.2% CyberGym Pass@1 score and success above 70% across 20 programming languages, versus 3.5 Flash Cyber's narrower, V8-engine-focused public results. Chrome Security's own testing found 2.6 times more correct patches than the best commercial models of larger size, though Google has not published a head-to-head score against a named non-Google competitor.
Is Gemini 3.8 Flash Cyber open source?
No. It is fully proprietary and closed-weight, and unlike mainline Gemini 3.8 Flash it is not available through Google's standard Gemini API at all; the only path to access is a reviewed Fairwind Program application.
What happens to the data you send to Gemini 3.8 Flash Cyber?
Google has not published a data retention or training policy specific to this model. Since access is limited to vetted Fairwind Program partners rather than the public API, expect terms to be negotiated per organization rather than governed by a public consumer policy.
Who should apply for Gemini 3.8 Flash Cyber access, and who should skip it?
Government cybersecurity agencies, critical infrastructure operators in sectors like healthcare and energy, and large software maintainers doing continuous vulnerability triage are exactly who Google built the Fairwind Program for. Everyone else should use mainline Gemini 3.8 Flash, or a general coding model, since there is no public access path and the model is narrowly scoped to security work.