White hat hackers just breached OpenAI using Anthropic's Claude in less than 72 hours — and it is a case…

https://cdn.mos.cms.futurecdn.net/SSrgDUXsJwUVxtvheg4YCM-2560-80.jpg
  • Security researchers used Claude Opus 5 to hijack an OpenAI employee's ChatGPT account
  • Exploit abused an image processing flaw on OpenAI community forums to gain full repo access
  • The entire timeline from vulnerability discovery to repo access took less than 72 hours

While taking part in an OpenAI bug bounty program, a group of Hacktron security researchers managed to compromise an internal OpenAI ChatGPT account and access internal company code on Github.

According to the Wall Street Journal, who first reported the incident, the researchers used a “special version” of Anthropic’s Claude made available to “qualified cybersecurity practitioners” to pull off the attack.

The researchers initially attempted to use Claude Opus 4.8 to create a breach, but faced multiple setbacks as the model “struggled across several sessions to produce a working exploit.” But the release of Opus 5 changed everything.

OpenAI breach part of wider libheif exploit

The breach...

Copyright of this story solely belongs to www.techradar.com. To see the full text click HERE

Read more