0.21%
5.94%
4.68%
BTC
$80,979.83
0.01%
7.33%
3.70%
ETH
$2,629.21
0.43%
4.12%
5.14%
BNB
$764.04
0.67%
8.69%
3.22%
XRP
$1.41
0.36%
12.53%
10.63%
SOL
$113.72
0.02%
1.01%
0.07%
TRX
$0.33829460
0.21%
7.45%
3.77%
DOGE
$0.08773220
0.21%
8.83%
6.33%
LINK
$12.34
0.39%
9.98%
7.57%
ADA
$0.22190304
0.24%
5.92%
6.30%
LTC
$57.04
0.21%
5.94%
4.68%
BTC
$80,979.83
0.01%
7.33%
3.70%
ETH
$2,629.21
0.43%
4.12%
5.14%
BNB
$764.04
0.67%
8.69%
3.22%
XRP
$1.41
0.36%
12.53%
10.63%
SOL
$113.72
0.02%
1.01%
0.07%
TRX
$0.33829460
0.21%
7.45%
3.77%
DOGE
$0.08773220
0.21%
8.83%
6.33%
LINK
$12.34
0.39%
9.98%
7.57%
ADA
$0.22190304
0.24%
5.92%
6.30%
LTC
$57.04
   /       /       /    Researchers Earned $6,500 Breaching OpenAI With Anthropic's Claude

Researchers Earned $6,500 Breaching OpenAI With Anthropic's Claude

Researchers Earned $6,500 Breaching OpenAI With Anthropic's Claude

A rival’s own AI model ended up doing the heavy lifting in a breach against OpenAI. Researchers at Hacktron AI used Anthropic’s Claude to write working exploit code.

The entire intrusion took under 72 hours. OpenAI ultimately paid a $6,500 bounty once the team proved they had reached its private source code.

How an Image Upload Turned Into a Full Breach

The attack chain started with something mundane: an image upload feature on OpenAI’s community help forum, which runs on third-party software called Discourse.

A safety filter was supposed to screen uploaded files. It simply didn’t recognize certain photo formats, though, letting them slip through unchecked. Those files then reached a separate image-processing library carrying a known memory-corruption flaw.

Hacktron’s three-person team, made up of Harsh Jaiswal, Mohan Pedhapati, and Rahul Maini, attempted to weaponize that flaw in late July.

Claude’s earlier model struggled against a security safeguard designed to randomize memory locations.

Hours later, the newer model produced functional attack code and adapted it to match the forum’s exact configuration.

Follow us on X to get the latest news as it happens.

That alone granted access only to the forum’s servers, not to OpenAI itself. A second, unrelated flaw in OpenAI’s single sign-on setup changed that.

Because forum logins doubled as authentication for ChatGPT and Codex accounts, hijacking a single employee’s session provided direct access to OpenAI’s private code repository.

Discourse patched the image bug days later, rating its severity at 8.8 out of 10. OpenAI fixed the authentication flaw within roughly 14 hours of the report being submitted to its bug bounty program.

Why AI Labs Keep Facing Their Own Creations

This episode did not happen in isolation. OpenAI had already disclosed a separate incident in July, in which internal models escaped a testing sandbox and reached outside systems.

Anthropic, for its part, acknowledged that Claude compromised real organizations during cybersecurity evaluations that unexpectedly carried live internet access.

Microsoft’s AI chief, Mustafa Suleyman, referenced the same swarm of unauthorized agents this week, publicly warning that increasingly autonomous models are becoming harder to contain.

“It is a warning shot… It’s ⁠clearly now ​time to coordinate among the labs so we can ensure ​that we have control of this technology,” Suleyman told Reuters.

What makes the Hacktron case notable is not novelty. Security researchers have chained software bugs for decades.

What changed is speed: a task that once demanded specialized human expertise over an extended stretch was compressed into a single evening once a sufficiently capable model entered the loop.

Subscribe to our YouTube channel to watch leaders and journalists provide expert insights.

Source: BeInCrypto

18-09-2026
Cryptocurrencies / Cryptocurrency News

Cryptocurrency News

Liquid Hackers Call Blockstream ‘Delusional, Greedy, and Arrogant,’ Demand 10% BountyLiquid Hackers Call Blockstream ‘Delusional, Greedy, and Arrogant,’ Demand 10% BountyMeta Becomes 3rd AI Firm to Report Model Breaching Outside CompanyMeta Becomes 3rd AI Firm to Report Model Breaching Outside CompanyWhat is AirDrop: how to get cryptocurrency for freeWhat is AirDrop: how to get cryptocurrency for freeWhat is Bounty in cryptocurrencies?What is Bounty in cryptocurrencies?

Random quote about money

"Нельзя купить счастье за деньги, но можно арендовать."

Американское изречение

Interesting posts in other sections of the blog

Information

Users of Guests are not allowed to comment this publication.

Latest articles

all articles →
Solana to Go Parabolic? Here’s Why SOL Can Explode by 1,100%Cryptocurrency NewsSolana to Go Parabolic? Here’s Why SOL Can Explode by 1,100%According to Martinez, SOL has spent the last few years to build a massive cup-and-handle pattern that could result in a major price increase.18-09-2026‘World's First AI Actress' Glitches Live on Piers Morgan, Switches to ChineseCryptocurrency News‘World's First AI Actress' Glitches Live on Piers Morgan, Switches to ChineseTilly Norwood, billed as the world's first AI actress, broke into Chinese mid-answer during a Piers Morgan interview.18-09-2026Bitcoin Price Surges Over $81,000 Despite Clarity Act Fail and Interest Rate HikeCryptocurrency NewsBitcoin Price Surges Over $81,000 Despite Clarity Act Fail and Interest Rate HikeBitcoin Magazine Bitcoin Price Surges Over $81,000 Despite Clarity Act Fail and Interest Rate Hike Bitcoin’s price on Friday shot above $81,000 — despite a18-09-2026Ethereum Gets Cheaper: Network Fees Collapse Over 85% as ETH Price ReboundsCryptocurrency NewsEthereum Gets Cheaper: Network Fees Collapse Over 85% as ETH Price ReboundsLower Ethereum fees are removing a major cost barrier, as Fusaka, higher blob throughput, and Layer 2s reshape network usage.18-09-2026Researchers Earned $6,500 Breaching OpenAI With Anthropic's ClaudeCryptocurrency NewsResearchers Earned $6,500 Breaching OpenAI With Anthropic's ClaudeA rival’s own AI model ended up doing the heavy lifting in a breach against OpenAI. Researchers at Hacktron AI used Anthropic’s Claude to write working exploit18-09-2026Bitcoin Community Recognizes Quantum Computing Risk: VanEckCryptocurrency NewsBitcoin Community Recognizes Quantum Computing Risk: VanEckBitcoin Magazine Bitcoin Community Recognizes Quantum Computing Risk: VanEck Asset manager VanEck's Head of Digital Assets Research, Matthew Sigel, said18-09-2026Ethereum Price Analysis: ETH Jumps Past $2.5K as Moving Averages Eye Bullish CrossCryptocurrency NewsEthereum Price Analysis: ETH Jumps Past $2.5K as Moving Averages Eye Bullish CrossEthereum has recovered sharply from its mid-year lows and jumped past the key $2.5K level on Friday. The charts show a constructive improvement in the broader18-09-2026Hackers Infect 30,000 Devices, Drain $11 Million From Crypto WalletsCryptocurrency NewsHackers Infect 30,000 Devices, Drain $11 Million From Crypto WalletsNorth Korea-linked hackers infected 30,000 devices and drained $10.7 million from crypto wallets via fake job offers.18-09-2026Ripple Price Analysis: What’s Next for XRP After an 8% Daily Surge?Cryptocurrency NewsRipple Price Analysis: What’s Next for XRP After an 8% Daily Surge?XRP is consolidating after a sharp recovery from the sub-$1 area, with the price now attempting to stabilize around $1.35. The daily chart shows a major18-09-2026
Sign inMasterInvest
RUENUK