HEIF Heist Image Library Flaws Hit OpenAI, Slack, Meta and GitHub
Researchers unveiled "HEIF Heist," a set of flaws in the libheif image decoding library that enabled an exploit chain breaching OpenAI's internal GitHub repos, with the same parser bugs also affecting Slack, Meta and GitHub.
2026-09-18 ~ 2026-09-18 · 4 related posts
- HEIF Heist: one image parser bug class hits OpenAI, Slack, Meta, GitHub Enterprise with RCE — Miles_Brundage · 2026-09-18
- Hackers say same image parser bug that hit OpenAI also affects Slack, GitHub, Meta — Miles_Brundage · 2026-09-18
- HEIF Heist: libheif flaws allowed researchers to hack OpenAI, Slack, Meta and more — tszzl · 2026-09-18
- Chained Forum RCE and SSO Flaw Let Researcher Reach OpenAI's Internal GitHub Repo — paul_cal · 2026-09-18