On July 25, our team hacked OpenAI. It took us less than 72 hours. Two vulnerabilities chained together gave us access to ChatGPT and Codex accounts belonging to OpenAI employees. We demonstrated the impact with a harmless PR in OpenAI’s internal monorepo. The full chain: HEIF upload → libheif heap overflow → RCE → OpenAI SSO flaw → ChatGPT/Codex takeover → connected GitHub → internal PR. OpenAI fixed the SSO issue roughly 14 hours after our report. Research by @rootxharsh, @S1r1u5_ and @iamnoooob. Full technical write-up: https://t.co/J5inrGRyXw
AI is changing the economics of exploitation. Capabilities that once required significantly more time, expertise and resources are becoming accessible to much smaller teams. The only solution is to keep AI safety and cybersecurity in the same conversation. More coverage by @WSJ: https://t.co/tXXKUiUEoh
https://t.co/RUCBLezuS8
It demonstrates a full attack chain, from an image-upload overflow to internal source-code access at a frontier lab, showing how fast AI-assisted offensive research can compress what once took far longer.
Checking sign-in…
Loading comments…