CVE-2026-32882
CVSS 7.1 HIGH: libheif is a HEIF and AVIF file format decoder and encoder. EPSS 0.3% (27º percentile).
Vulnerabilità · 11 ore fa
Hacktron ha mostrato che una catena di due bug ha permesso di entrare negli account ChatGPT e Codex di alcuni dipendenti OpenAI e di toccare un repository interno. OpenAI ha corretto il problema in circa 14 ore e ha assegnato 6.500 dollari di bounty.
Il punto non era solo il bug nel forum pubblico di Discourse. Il vero confine rotto era l’identità: lo stesso sign-in OpenAI serviva sia il forum sia gli strumenti interni, così un accesso ottenuto dal lato esterno poteva trasformarsi in accesso da staff senza alcuna azione dei dipendenti. Hacktron ha detto che, in teoria, lo stesso percorso poteva estendersi anche a servizi collegati come GitHub, Slack ed email, pur senza usarlo.
Per chi riusa un unico SSO tra portali pubblici e SaaS interni, la perdita del front door può diventare compromissione d’account altrove anche dopo la correzione del servizio esposto.
CVSS 7.1 HIGH: libheif is a HEIF and AVIF file format decoder and encoder. EPSS 0.3% (27º percentile).
7 fonti che coprono questa storia
After spending billions, OpenAI still has gaps in its cybersecurity
Two separate groups of researchers found holes in OpenAI’s identity systems and agent controls.
Claude Opus 5 Helped Researchers Take Over OpenAI Staff Accounts via Chained Flaws
In security research, Claude Opus 5 helped chain forum and login flaws to take over OpenAI staff accounts and reach an internal repository.
Researchers used Claude to hack OpenAI employees' ChatGPT accounts
Agentic exploits for the win (again)
Researchers use AI to find widespread software decoder flaw
Hacktron researchers used Anthropic's Claude and OpenAI models to uncover "HEIF Heist," a critical image decoder flaw exposing major tech platforms to data theft and remote access.
Researchers used Anthropic's Claude to hack into OpenAI | TechCrunch
Security researchers used Anthropic’s Claude to exploit vulnerabilities in OpenAI’s systems, taking over employee accounts and gaining access to an internal code repository before reporting the flaws.
Researchers used Claude to hack OpenAI
Researchers used Claude to reach an OpenAI employee account and sensitive GitHub data.
AI-Built Exploit and Sign-In Flaw Opened Path to Internal OpenAI Code
Hacktron researchers earned a bug bounty after demonstrating access to OpenAI employee accounts.
Part of the PlainSec briefing for 2026-09-21