AI Hallucination Flaw Exposes OpenAI Forum to Account Takeovers

Key Takeaways Security researchers exploited an image-processing vulnerability in OpenAI’s community forum, leading to remote code execution. The breach leveraged a flaw in OpenAI’s single sign-on, allowing account takeovers of employee ChatGPT and Codex accounts. Anthropic’s Claude Opus 5 significantly accelerated the exploit development process, creating a working exploit in just three hours. The vulnerability, … Continue reading AI Hallucination Flaw Exposes OpenAI Forum to Account Takeovers