Hacktron researchers demonstrate AI-assisted exploit chain accessing OpenAI internal repos
2 Sep 18 · 6d ago · 1 article · 1 source · development 2 of 2
Hacktron used Claude Opus models to build a working exploit for an unpatched libheif vulnerability in Discourse's image-processing pipeline. By chaining this with a flaw in OpenAI's community forum sign-in tokens—which carried excessive permissions—they gained access to employee ChatGPT and Codex accounts and demonstrated access to internal GitHub repositories by opening a pull request.
“We thank the researchers for contacting us and sharing their findings. We narrowed the permissions on Community sign-in tokens and revoked affected tokens and sessions.”
OpenAIHacktron Security research firmOpenAI Target and respondentDiscourse Third-party forum platform
The whole story articles the bright band is this development · numbered dots are the others · click one to jump
What was reported 1 claim about this development
-
first by SecurityWeek, 6d ago
All 2 developments of Claude-Built Exploit Chained With Sign-In Flaw to Access… →
Newswires