OpenAI Hacked by Researchers Using Claude
- Security startup Hacktron disclosed this week that it used Anthropic's Claude Opus 5 to compromise an OpenAI employee's ChatGPT account by exploiting a vulnerability in the company's community forum.
- Researchers discovered a heap buffer overflow in the forum's libheif image-processing software, which they developed into a functional exploit chain using Claude Opus 5 in less than 72 hours, according to Hacktron.
- After gaining forum access, the team exploited an identity flaw to compromise an employee's Codex account, then used it to generate a benign pull request within OpenAI's internal GitHub repository.
- OpenAI patched the community forum, revoked affected sessions, and paid Hacktron a $6,500 bounty, though the company has not published a detailed account of the incident.
- CEO Zayne Zhang of Hacktron noted that "the worlds of AI safety and cybersecurity are converging," highlighting how AI agents with broad credential access create new attack surfaces across internal infrastructure.
239 Articles
239 Articles
After spending billions, OpenAI still has gaps in its cybersecurity
Two separate reports of security flaws in OpenAI systems highlight how even a company spending billions on developing its own AI-powered cybersecurity testing tools remains vulnerable. In one incident, researchers breached OpenAI systems with the help of a rival AI developer’s tools, while another group of researchers tricked OpenAI’s Codex agent into bypassing its sandbox controls. Researchers from Hacktron chained multiple vulnerabilities to a…
How 3 Indian-origin researchers used Claude to breach OpenAI systems in 72 hours
Three Indian cybersecurity researchers from Hacktron used Anthropic's Claude AI to help exploit vulnerabilities that provided them with access to multiple OpenAI employee ChatGPT and Codex accounts.
How 3 Indian researchers used Claude to hack OpenAI
Discover how three Indian-origin researchers at Hacktron AI used Anthropic’s Claude to uncover and exploit security vulnerabilities at OpenAI in under 72 hours, exposing employee accounts and internal code access—and what this means for the future of AI-driven cybersecurity.
Hackers who broke into OpenAI warn the AI industry has a security problem
Security experts said companies developing powerful AI should step up protections against cyberattacks.
Coverage Details
Bias Distribution
- 41% of the sources are Center
Factuality
To view factuality data please Upgrade to Premium




































