← Back to KHAO

OpenAI · Claude · Taiwan ·

Hackers breach OpenAI tapping Claude systems, gaining access to employee accounts and the company's internal codebase

2 min read

Compiled by KHAO Editorial — aggregated from 1 source. See llms.txt for citation guidance.

◌ Single Source

Image accompanies the article at Tom's Hardware. No description was extracted from the source.

A team of white-hat hackers from cybersecurity startup Hackron AI has successfully hacked OpenAI using Claude tools.

Key facts

Summary

Operating as hackers under OpenAI’s bug bounty program, Hacktron researchers uncovered critical vulnerabilities that granted them access to internal employee tools and the ability to compromise private software repositories. First, the researchers uploaded a malicious HEIF (High Efficiency Image File) image to the forum as a profile picture. Armed with session tokens hijacked from the local forum server database, the hackers exploited the SSO flaw to impersonate a real OpenAI employee, allowing them to bypass traditional login screens and infiltrate a highly privileged internal account linked to OpenAI's development teams. Similar to an incident last month in which China-linked hackers used AI to carry out the first-ever end-to-end autonomous cyberattack on Taiwan's government, the Hacktron hack also used artificial intelligence.

Read full article at Tom's Hardware →

#OpenAI #Claude #Taiwan