Under $3,000 in Tokens: Claude Opus 5 Cracked OpenAI's Internal Repo in Hours

Yuchenj_UW · x · 2026-09-18

Adding detail to the report that three researchers breached an OpenAI employee's Codex account, the author notes they turned an image-upload bug into a full account takeover, then had the compromised employee's Codex open a PR in OpenAI's internal monorepo. The whole attack cost under $3,000 in tokens. Opus 4.8 struggled with the exploit; Opus 5 cracked it within hours of release. His takeaway: AI-powered cyberattacks are becoming common and cheap, so the best defense is putting the best AI in defenders' hands too.

Related event: Researchers Used Claude to Breach OpenAI's Internal Codebase(22 posts)→

Original post →

More from Safety

Safety channel →