Home | FCA & regulatory news | British English edition
Trade Hub UK

Independent coverage of UK markets, FCA policy and institutional trading

AD CME Group Education AD Bank of England Statistics AD Investing.com Markets AD LSEG Data
Digital Assets

OpenAI Hacked Using Anthropic’s Claude, Hackers Confirmed It

OpenAI Hacked Using Anthropic’s Claude, Hackers Confirmed It
OpenAI Hacked Using Anthropic’s Claude, Hackers Confirmed It
  • Hacktron AI researchers say they hacked OpenAI on July 25 using Anthropic’s Claude.

  • Researchers chained two vulnerabilities to access OpenAI employee ChatGPT and Codex accounts.

  • OpenAI paid Hacktron AI a $6,500 bounty for responsibly reporting the vulnerabilities.

A three-person team has hacked OpenAI after they used Anthropic’s Claude to help exploit a flaw linked to the company’s community forum. The team gained access to an OpenAI employee’s ChatGPT account and reached the company’s internal GitHub environment before reporting the issue to OpenAI.
Here are the details of the Hack.

Hackers Confirm OpenAI Breach

On X, AI researcher s1r1us confirmed that the team breached OpenAI on July 25, 2026.Â

The Hacktron AI team chained two vulnerabilities to take over ChatGPT and Codex accounts linked to OpenAI employees and some unrelated users. These accounts also had access to connected services such as Outlook, Slack, and GitHub.

The team said the entire process from finding the vulnerability to reaching OpenAI’s internal repository took less than 72 hours.

“On July 25, we hacked OpenAI. It took us <72h.”

As proof, we created a pull request in OpenAI’s internal codebase.

How the Claude-Assisted OpenAI Breach Happened?

The attack began on July 23 with a vulnerability in the image-processing system used by Discourse, the third-party software hosting OpenAI’s community forum.

The team first used Claude Opus 4.8 to help build an exploit, but the model struggled to bypass address-space layout randomization, a security feature designed to make memory attacks harder.

After Anthropic released Claude Opus 5 the next day, the researchers switched models and said it helped them create a working ARM64 exploit within hours.

The exploit allowed the team to steal active authentication tokens from the discussion server. They then used those credentials to access an OpenAI employee account and reach private GitHub repositories. The researchers said the full attack chain took less than 72 hours.

OpenAI’s Response

OpenAI confirmed the incident and said it narrowed permissions on community sign-in tokens, revoked affected sessions, and fixed the image-processing flaw. The company said no customer data or proprietary AI model weights were compromised.

Discourse also patched the underlying vulnerability and added additional protection around image processing.

Who Was Behind the Attack?

The breach was carried out by a three-person team of cybersecurity researchers from Hacktron AI. The team found and exploited the security flaws as part of an authorized white-hat bug bounty program, not as a criminal attack.

Meanwhile, OpenAI later paid the researchers a $6,500 bounty for reporting the vulnerabilities.

Was this writing helpful?

Trust with CoinPedia:

CoinPedia has been delivering accurate and timely cryptocurrency and blockchain updates since 2017. All content is created by our expert panel of analysts and journalists, following strict Editorial Guidelines based on E-E-A-T (Experience, Expertise, Authoritativeness, Trustworthiness). Every article is fact-checked against reputable sources to ensure accuracy, transparency, and reliability. Our review policy guarantees unbiased evaluations when recommending exchanges, platforms, or tools. We strive to provide timely updates about everything crypto & blockchain, right from startups to industry majors.

Investment Disclaimer:

All opinions and insights shared represent the author's own views on current market conditions. Please do your own research before making investment decisions. Neither the writer nor the publication assumes responsibility for your financial choices.

Sponsored and Advertisements:

Sponsored content and affiliate links may appear on our site. Advertisements are marked clearly, and our editorial content remains entirely independent from our ad partners.