3 guys hacked OpenAI using a rival Anthropic model. Here's what to know.
Cybersecurity researchers from a small firm called Hacktron in India broke into OpenAI, showing how vulnerable frontier labs are.
Three Indian cybersecurity researchers, from a firm called Hacktron, managed to breach OpenAI's systems using Anthropic's rival AI model. Mohan Pedhapati, one of the researchers, explained that more advanced AI models make hacking easier and more dangerous. The researchers detailed how they utilized Claude Opus 4.8 to identify vulnerabilities in the code of Discourse, a third-party service used by OpenAI's community forum.
They attempted to exploit the flaw using Opus 4.8, but succeeded the following day with the more advanced Claude Opus 5. This rapid advancement in AI posed significant security risks, as the researchers could potentially access users' ChatGPT and Codex accounts, including connected apps and private conversations. OpenAI responded by tightening permissions on Community sign-in tokens following the breach.
Written by urgent.news from CBS News's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.
This story
This is one outlet's version. Read the fullest account.
- What AI slowdown? OpenAI, Anthropic release dueling models as price wars heat up fortune.com
- OpenAI says it plans to let third-party groups conduct technical safety evaluations of its AI models during the training, evaluation, and deployment phases (Rachel Metz/Bloomberg) bloomberg.com
- Anthropic and OpenAI roll out cheaper models in first release since call for slowdown cnbc.com