Google Gemini 3.8 Flash and Cyber
Gemini 3.8 Flash and Flash Cyber provide reasoning, coding, agentic workflow, and cybersecurity capabilities, with Flash Cyber available to trusted defenders through the Fairwind Program.
Gemini 3.8 Flash and Flash Cyber provide reasoning, coding, agentic workflow, and cybersecurity capabilities, with Flash Cyber available to trusted defenders through the Fairwind Program.
What the product does and how it is positioned
Gemini 3.8 Flash is a workhorse model with improvements across software engineering, agentic tasks, and critical multi-step reasoning in specialized domains.
Gemini 3.8 Flash Cyber is a cybersecurity model for vulnerability detection and automated patching, available to trusted defenders through the Fairwind Program.
Source-supported ways to use the product
Developers can use Gemini 3.8 Flash for long-horizon coding and agentic workflows.
Trusted defenders can use the Cyber variant to identify vulnerabilities across multiple programming languages and generate automated patches.
The 3.8 series emphasizes diligence on complex tasks by executing extra reasoning steps and calling tools iteratively.
Checks to run with your own material and workflow
What was checked and when
Answers based on the source-checked product record
Gemini 3.8 Flash is a general-purpose model for coding and agentic tasks, while 3.8 Flash Cyber is a specialized variant with more permissive cybersecurity mitigations for trusted defenders.
Developers can access Gemini 3.8 Flash through the Gemini API in Google AI Studio and Android Studio, or generate user interfaces in Stitch.
No. Gemini 3.8 Flash Cyber is restricted to trusted government authorities, critical infrastructure operators, and software maintainers through the Fairwind Program.
Developers can use lower effort levels to minimize token overhead, or continue using Gemini 3.7 Flash, which remains supported for efficiency-first workloads.
The models include safeguards against CBRN and cyber offense misuse, alongside improved robustness against prompt-injection-related malicious attacks as measured by Gray Swan.