Tech News
← Home  ·  All topics

Discourse

2 GoKawiil briefs on this topic

Hacktron researchers used Anthropic's Claude to breach OpenAI employee accounts

Three independent security researchers at Hacktron reportedly used Anthropic's Claude Opus models to gain access to OpenAI employee accounts within 72 hours, exploiting a HEIF image-processing flaw in Discourse, the third-party service running OpenAI's community forums. They proved access by submitting a pull request through a compromised employee's Codex account but stopped short of touching OpenAI's proprietary code in its 'Monorepo' repository.

Researchers chained two bugs to hijack OpenAI staff ChatGPT and Codex accounts

Security researchers at HacktronAI combined a flaw in the libheif image decoder used by ImageMagick with an SSO identity issue on OpenAI's Discourse-based community forum to gain remote code execution and admin access on community.openai.com. Using that foothold, they took over multiple OpenAI employees' ChatGPT and Codex accounts and, to prove access without touching sensitive data, opened a pull request in OpenAI's internal monorepo. The whole process from discovery to internal repo access took under 72 hours.