Back to stories
model releaseGenerated by an AI editor from the reporting and web sources listed on this page.

Google launches Gemini 3.5 Flash Cyber for vulnerability hunting — but keeps it on a tight leash

Google's new security-tuned Gemini model promises cheaper, faster bug discovery through its CodeMender agent, but access is restricted to governments and trusted partners.

Published Updated The total reporting and web sources attached to this story.How many attached sources came from wider web research rather than monitored news feeds.The AI editor’s assessment of how strongly the attached sources’ quality and agreement support this article.

What matters

  • Google launched Gemini 3.5 Flash Cyber, a security-tuned model fine-tuned to find, validate, and patch vulnerabilities, paired with its CodeMender code-security agent now in preview.
  • Flash Cyber is restricted to governments and trusted partners through a limited-access pilot program that Google says will expand over time, though no timeline was given.
  • Google positioned Flash Cyber as a cost-efficient alternative to larger, pricier AI security systems like Anthropic's Mythos.
  • The launch included sibling models: Gemini 3.6 Flash ($1.50/M input, $7.50/M output tokens, 17% fewer output tokens than 3.5 Flash) and Gemini 3.5 Flash-Lite (350 output tokens per second).
  • Gemini 3.5 Pro remains delayed with no updated timing, while Google disclosed that Gemini 4 pretraining is already underway.

Benchmarks

BenchmarkGemini 3.6 FlashGemini 3.5 FlashSource
Artificial Analysis Index — output token usage17% fewer output tokens than 3.5 Flashvendor-reported
DeepSWE (Datacurve)49%37%vendor-reported
MLE Bench63.9%49.7%vendor-reported
OSWorld-Verified83%78.4%vendor-reported
GDPval-AA v214211349vendor-reported

Numbers come from the linked sources; vendor-reported results are labeled and worth independent verification.

Launch facts

Price:
Gemini 3.6 Flash: $1.50/M input tokens, $7.50/M output tokens. Flash Cyber pricing not disclosed.
Availability:
Gemini 3.6 Flash and 3.5 Flash-Lite broadly available; Gemini 3.5 Flash Cyber restricted to governments and trusted partners via limited-access pilot program
Platforms:
Gemini API, Gemini Enterprise, CodeMender

What happened

Google announced three new Gemini Flash models on July 21, 2026, headlined by Gemini 3.5 Flash Cyber, a security-tuned model designed to find, validate, and patch software vulnerabilities. The model is paired with Google's CodeMender code-security agent, which entered preview the same day.

According to a dedicated DeepMind blog post, Flash Cyber is built on top of the base 3.5 Flash model and fine-tuned specifically for vulnerability discovery and patching, making it more effective at those tasks than Gemini's mainline Flash models. Google positions it as a "cost-efficient and highly capable alternative" to larger, more expensive AI security systems such as Anthropic's Mythos.

However, Google is deliberately limiting who can use it. Citing the "dual-use nature" of the technology, the company is making Flash Cyber available exclusively to governments and trusted partners via CodeMender through a limited-access pilot program. DeepMind says the program will be "expanding over time," but gave no timeline for broader availability.

The launch also included two sibling models: Gemini 3.6 Flash, a workhorse model that Google says uses 17% fewer output tokens than 3.5 Flash on the Artificial Analysis Index and is priced at $1.50 per million input tokens and $7.50 per million output tokens; and Gemini 3.5 Flash-Lite, described as the fastest and most cost-effective 3.5-class model, delivering 350 output tokens per second.

Notably absent from the announcement was Gemini 3.5 Pro, Google's flagship model. Originally slated for a June launch per CEO Sundar Pichai's I/O keynote in May, the Pro model remains in testing with partners. Google said it will ship "as soon as it is ready" but offered no updated timing. Meanwhile, The Decoder reports that pretraining for Gemini 4 is already underway, which Google calls its "most ambitious training run" yet.

Why it matters

The cybersecurity AI market is heating up. Anthropic's Mythos models have established a foothold in AI-assisted vulnerability discovery, and Google's entry with a Flash-tier model signals a bet that specialized, efficient models — not just the largest frontier systems — can compete in security workloads.

The restricted access is the key tension. By limiting Flash Cyber to governments and trusted partners, Google is acknowledging that a model skilled at finding vulnerabilities is also skilled at exploiting them. This is a more cautious deployment posture than typical API releases, and it means most developers and security teams cannot simply call the model today. The pilot's planned expansion offers a path forward, but without a timeline, the broader market is left waiting.

The continued absence of Gemini 3.5 Pro adds another layer of pressure. With Anthropic and OpenAI pushing ahead with frontier models, Google's inability to ship its flagship — now delayed by at least a month — raises questions about whether DeepMind can keep pace. The Gemini 4 pretraining disclosure reads as a forward-looking signal, but it also underscores that the current generation's top model is still missing.

What to watch

  • Pilot expansion timeline: Google says the Flash Cyber pilot will expand "over time" but has not specified when or to whom. Watch for updates on eligibility criteria.
  • Gemini 3.5 Pro launch: Every Flash release without Pro deepens the narrative of a delayed flagship. Google's next announcement cycle will be scrutinized for a ship date.
  • Independent benchmarks: Google claims Flash Cyber delivers "competitive performance at the frontier," but no third-party evaluations have been published yet.
  • Gemini 4 progress: The disclosure that pretraining is underway suggests Google is already looking past the 3.5 generation. Any technical details or timelines could shift market expectations.
  • Anthropic's response: With Google directly naming Mythos as the comparison point, expect competitive positioning to intensify in the AI security model space.

What to do next

Developers

Determine whether your organization qualifies for trusted-partner access to Gemini 3.5 Flash Cyber and CodeMender through Google's security programs, and sign up for updates on pilot expansion.

Flash Cyber is not broadly available via API. Developers need to pursue restricted-access channels and monitor Google's stated plan to expand the pilot over time.

Founders

Assess how Google's entry into AI-assisted vulnerability hunting at Flash-tier pricing affects your security-product roadmap and competitive positioning.

Even with restricted access, Google's move signals where the market is heading — cheaper, specialized security models — which could reshape the economics for security startups.

PMs

Map where AI-assisted vulnerability detection and automated patch suggestion fit in your product roadmap, and identify whether CodeMender's preview capabilities align with your security workflows.

A cost-efficient security model paired with an agent could unlock features like continuous codebase scanning that were previously too expensive, but only if your organization can secure access.

Investors

Track how Google's pricing and restricted-access strategy for Flash Cyber affects the competitive landscape for standalone AI security model vendors, and note the Gemini 4 pretraining signal.

A credible low-cost alternative from Google — even if access is limited — could compress margins for security-model providers. The Gemini 4 disclosure also suggests Google is already investing in the next generation despite 3.5 Pro delays.

Operators

Evaluate whether your security operations team could benefit from CodeMender's preview capabilities and initiate conversations with Google about trusted-partner eligibility.

If your organization handles sensitive infrastructure or works with government contracts, you may qualify for access to Flash Cyber through CodeMender, potentially lowering the cost of AI-assisted security workflows.

How to test

  1. 1Contact Google to determine whether your organization qualifies for trusted-partner access to Flash Cyber and CodeMender preview.
  2. 2Once access is granted, configure CodeMender to scan a test codebase containing known, labeled vulnerabilities.
  3. 3Run the agent against the dataset, prompting it to identify vulnerabilities and suggest patches.
  4. 4Compare detection accuracy, false-positive rate, and patch suggestion quality against your current security scanning tool.
  5. 5Track latency and any cost metrics Google provides to evaluate the cost-efficiency claims relative to larger models.

Caveats

  • Flash Cyber is restricted to governments and trusted partners; most developers and organizations will not have access.
  • No independent benchmarks are yet available; Google's claims of competitive performance at the frontier are vendor-reported.
  • Pricing specific to Flash Cyber was not disclosed in available sources; only sibling model 3.6 Flash pricing was reported.
  • CodeMender is in preview, so capabilities and reliability may change before general availability.
  • Google has not provided a timeline for when the pilot program will expand beyond governments and trusted partners.