Fugu-Cyber
Sakana AI's cybersecurity-specialized orchestration model, claiming state-of-the-art scores on real-world security benchmarks like CyberGym and CTI-REALM.
Updated 2026-07-21
No free tier is documented for Fugu-Cyber.
Listed pricing: Token plan only: $6–$12/M input, $36–$54/M output (application required, no free tier).
Overview
Fugu-Cyber is Sakana AI's orchestration model tuned specifically for cybersecurity work — vulnerability discovery, exploit reasoning, and threat-intelligence analysis — released July 21, 2026 as a new API endpoint. Where general frontier models handle security tasks as one capability among many, Fugu-Cyber is trained and evaluated against domain benchmarks, and Sakana positions its scores on CyberGym (real-world vulnerability tasks) and CTI-REALM (cyber threat intelligence) as state-of-the-art, matching the dedicated cyber variants of GPT-5.5.
It's built for security engineers, red teams, and threat researchers who want a model that behaves like a coordinated agent across security tooling rather than a chat window. As an "orchestration" model, the pitch is that it plans and sequences multi-step security workflows — enumerating a target, reasoning about a vulnerability class, drafting analysis — instead of answering one prompt at a time. This is a raw model accessed through an API, not a packaged app, so you're wiring it into your own pipeline or agent framework.
The honest caveat: nearly everything known about performance comes from Sakana's own release, and access is gated behind an application-and-approval process with no free tier or public playground. That makes independent verification hard right now, and the specialization cuts both ways — this is not a general-purpose model you'd reach for outside security contexts.
Is Fugu-Cyber free?
No free tier is documented for Fugu-Cyber.
Listed pricing: Token plan only: $6–$12/M input, $36–$54/M output (application required, no free tier).
No figure is estimated here for what is not published. Check Fugu-Cyber's own site for the current terms.
Pricing on this page has not been re-verified. The entry was last edited on , and no separate pricing check has been run since. Treat the figures as a record of what was published then and confirm on the official site.
Fugu-Cyber pricing
| Plan | Price | What's included |
|---|---|---|
| Token Plan | $6–$12/M input, $36–$54/M output | Pay-per-token API access; rates scale up for large-context requests. Access requires application approval. |
Pay-per-token API access; rates scale up for large-context requests. Access requires application approval.
Pricing on this page has not been re-verified. The entry was last edited on , and no separate pricing check has been run since. Treat the figures as a record of what was published then and confirm on the official site.
Is Fugu-Cyber worth it?
Worth it for Security engineers, red teams, and threat researchers who need an API model specialized for vulnerability discovery and threat-intelligence analysis.
There is no free tier to test it on, so the plans above are the entry cost. The recorded trade-offs are listed below, and any one of them can settle the question on its own.
The 8.2/10 AI Score is an editorial read of published capability, price and shipping pace. Nobody here has hands-on hours with Fugu-Cyber. How we verify.
Worth it if
The strengths recorded against this entry.
- Specialized for cybersecurity rather than a general model used off-label
- Claimed SOTA on real-world benchmarks (CyberGym, CTI-REALM), not just synthetic tests
- Orchestration design targets multi-step agentic security workflows
- Application-gated rollout is a reasonable posture for offensive-security capability
Not worth it if
Any one of these blocks your use case.
- Access is gated behind application approval with no free tier or public playground
- Performance claims come almost entirely from Sakana's own release — little independent verification yet
- Output pricing is steep and scales higher for large-context requests
- Narrow specialization: not useful outside security work
What sets Fugu-Cyber apart
- Trained and evaluated specifically for cybersecurity work, not general-purpose use
- Claimed state-of-the-art scores on real-world benchmarks CyberGym and CTI-REALM
- Orchestration design that plans and sequences multi-step security workflows
- Application-gated rollout with no free tier, reflecting offensive-security capability
Key features
Cyber Orchestration
Positioned as an orchestration model that plans and sequences multi-step security workflows rather than answering isolated prompts, aimed at agentic red-team and analysis pipelines.
Frontier Benchmarks
Sakana reports state-of-the-art results on CyberGym (real-world vulnerability tasks) and CTI-REALM (threat intelligence), claiming parity with GPT-5.5's dedicated cyber variants.
API Endpoint
Delivered as a new API endpoint with token-based pricing, meant to be integrated into existing security tooling and agent frameworks rather than used through a chat UI.
Gated Access
Availability requires an application and approval, signaling a controlled rollout appropriate to a model with offensive-security capabilities.
How it compares
| Tool | Best for | Pricing | Score |
|---|---|---|---|
| Fugu-Cyber | Security engineers, red teams, and threat researchers who need an API model specialized for vulnerability discovery and threat-intelligence analysis. | Token plan only: $6–$12/M input, $36–$54/M output (application required, no free tier) | 8.2/10 |
| Perplexity AI vs Perplexity AI → | Knowledge workers and researchers who want cited, synthesized answers instead of a list of links to click through. | Freemium | 9.4/10 |
| Gemini 3.8 Flash | — | $0.75 per million input tokens, $3.75 per million output tokens | 9.2/10 |
| NotebookLM vs NotebookLM → | Students, researchers, and professionals who need answers grounded strictly in the specific documents they upload. | Free | 9.1/10 |
Compare head-to-head
Related reading
Claude Fable 5.1 versus Gemini 3.8 Flash access split
Anthropic released Claude Fable 5.1 on September 1. Google announced both Gemini 3.8 Flash variants on September 2. Cache read pricing and Fairwind access
Securing codebases requires Fairwind approval first
Gemini 3.8 Flash Cyber ships only through the Fairwind Program for trusted defenders, with specific pricing for the standard model and clear eligibility rules.
Three Gemini Flash Models Add Agentic Video
Google launched agentic video understanding on Sep 01, 2026 for three Gemini Flash models, cutting tokens up to 88% and costs up to 66% on long-form video
Ready to try Fugu-Cyber?
Head to the official site to start with Fugu-Cyber — pricing and plans are listed above.
Visit Fugu-Cyber

