Urgent.News

What's breaking now, across thousands of outlets.

AI

Security Researchers Hacked Into OpenAI Using Anthropic’s Claude

OpenAI paid the researchers a $6,500 bug bounty, but the incident once again highlights the growing cybersecurity threats posed by advanced AI agents.

Security Researchers Hacked Into OpenAI Using Anthropic’s Claude

Hacktron, a nascent AI cybersecurity startup in San Francisco, successfully infiltrated OpenAI's codebase using Claude, a powerful language model. Zayne Zhang, co-founder and CEO of Hacktron, disclosed the security lapse to Business Insider. The company identified vulnerabilities in OpenAI's system architecture following a recent hack involving OpenAI and Hugging Face.

Zhang's research team began investigating security gaps at prominent AI firms like OpenAI. Hacktron successfully exploited the vulnerability via Claude, gaining access to ChatGPT and Codex accounts of users logging into OpenAI's community help forum. The company then used Claude to propose changes in OpenAI's internal code repository, but stopped short of accessing any code before alerting OpenAI.

In exchange for disclosing the issue, Hacktron received a $6,500 bounty. The startup, less than a year old and with fewer than 10 employees, emphasizes the growing convergence of AI safety and cybersecurity, highlighting the importance of cybersecurity professionals in the AI conversation. OpenAI acknowledged the researchers' findings, tightened the permissions on Community sign-in tokens, and revoked affected tokens and sessions.

Concerns over rogue AI agents, exemplified by recent disclosures from OpenAI, Anthropic, and Meta, have intensified fears of an AI apocalypse.

Written by urgent.news from Business Insider's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.

This story

This is one outlet's version. Read the fullest account.

Read the original at forbes.com →

More in AI

Same Sticker Price, 45% Cheaper: The AI Bill Trick Nobody Explains to Small Businesses

You comparison-shop AI tools by sticker price. That's exactly what the vendors want. Here's the thing nobody in AI sales will tell you: the price per token on the pricing page is almost irrelevant for…

  • AI tools marketed with fixed sticker price hide true cost.
  • Cache economics can cut AI bills by nearly half for small businesses.
  • Companies like Anthropic demonstrate 45% cost reduction through cache savings.

More from Friday 18 September →