Scammers exploit OpenAI's official email infrastructure for phishing attacks
kieranklaassen · x · 2026-08-29
A sophisticated phishing exploit uses OpenAI's official email infrastructure. Attackers create an org like "OpenAI x X Partnership" and manipulate HTML to hide the real header, using whitespace to truncate the official body in Gmail. Users click the fake link at the top and get scammed. Disclosure sent to OpenAI.
More from Safety
- Aligning agent interactions is orders of magnitude harder than single agents — Afinetheorem · 2026-08-30
- Debate on OpenAI Swarm Incident: Atmospheric Ignition vs. Hacker Script — mimi10v3 · 2026-08-30
- METR Researcher: Watch Out for Third-Party Oversight Theater — RichardMCNgo · 2026-08-30
- Evidence Suggests Agent Swarms Won't Spontaneously Solve Human Issues — LuizaJarovsky · 2026-08-30
- Opinion: AI-Driven Bioweapons Could Target Food Systems, Starve Nations — PierceLilholt · 2026-08-30
- AI Safety Circle Underestimated Risks; METR Barred from Probing OpenAI — DavidSKrueger · 2026-08-30