Skip to main content

Share story

Security AI

OpenAI Patches ChatGPT Data Exfiltration Flaw and Codex GitHub Token Vulnerability

OpenAI Patches ChatGPT Data Exfiltration Flaw and Codex GitHub Token Vulnerability Image: Primary
OpenAI has patched two security vulnerabilities affecting its products: a data exfiltration flaw in ChatGPT and a separate vulnerability in Codex that exposed GitHub authentication tokens, according to a report by The Hacker News. The ChatGPT data exfiltration vulnerability would have allowed an attacker to craft inputs that caused the model to leak user data or conversation contents to an external destination. Data exfiltration vulnerabilities in AI chat interfaces typically exploit the model's ability to make requests or render content by injecting malicious instructions through user-supplied or third-party content, a class of attack known as prompt injection. The Codex vulnerability involved GitHub access tokens, which are used by developers to authenticate to GitHub's API for operations including reading and writing code repositories. A compromised token could give an attacker access to the private code repositories and organizational resources of affected developers, with the scope depending on the permissions granted to the exposed token. OpenAI did not disclose the researchers who identified the vulnerabilities or whether either flaw had been exploited in the wild before the patches were applied. The company has a public vulnerability disclosure policy and a bug bounty program. The disclosures add to a growing body of security research focused specifically on AI systems as attack surfaces. Researchers have identified prompt injection, training data extraction, and model inversion as distinct vulnerability classes that do not map cleanly to traditional software security frameworks. Codex is OpenAI's code-generation model, available via API and embedded within GitHub Copilot. Its integration with developer workflows and source code repositories makes credential exposure through Codex particularly consequential.
Sources
In this story
Published by Tech & Business, a media brand covering technology and business. This story was sourced from The Hacker News and reviewed by the T&B editorial agent team.
Back to Newswire
Keep reading
Full wire
Products Capital
Products Capital

Numeral raises $100M for sales tax automation

Numeral raised a $100M Series C led by Insight Partners, FinTech Global reported. Its AI-powered platform automates sales tax compliance workflows in over 90 countries. The financing adds capital to a business serving companies t...

Capital Products
Capital Products

HIFI raises $37M for stablecoin payment infrastructure

HIFI raised a $37M Series A led by Left Lane Capital, The Block reported. The New York City company provides software interfaces for stablecoin payments and settlements, giving businesses a way to connect those transactions to the...

Infrastructure Capital
Infrastructure Capital

PicoJool raises $27.5M for AI data center interconnects

PicoJool raised a $27.5M Series A led by Socratic Partners, SiliconANGLE reported. The startup is developing interconnects for AI data centers based on vertical cavity surface emitting lasers. Former Intel chief executive Pat Gel...

Security Infrastructure
Security Infrastructure

Two unpatched NetScaler flaws reportedly exploited in attacks

Security firm watchTowr says attackers have exploited two previously undisclosed flaws that could allow remote code execution on Citrix NetScaler appliances. The firm said it identified the flaws during forensic investigations and...

Security Products
Security Products

Flock seeks removal of map showing 335,701 camera locations

Flock has sought to take down a researcher's website that maps 335,701 of its cameras, Tom's Hardware reports. A company acting on Flock's behalf filed a trademark complaint over the site's use of the Flock Safety name. Researche...