White-hat team hijacked OpenAI employee accounts in 72 hours, sparking bounty backlash

On July 25, security team S1r1u5 (also known as Hacktron AI, members include Harsh Jaiswal and others) used two vulnerability chains to take over ChatGPT/Codex accounts of OpenAI employees and some external users in under 72 hours, further reaching connected internal services like Outlook, Slack, and GitHub, and even submitted a PR to an internal code repository to prove the breach. On September 18 the team published a blog post with the details, and the incident sparked wide discussion about OpenAI's security investment and bounty levels.

Confirmed

Unconfirmed

Why it matters

2026-09-18 ~ 2026-09-19 · 10 related posts

Primary sources

2 near-duplicate retellings: ccerrato147 · NathanpmYoung