Researchers Chained Two Bugs to Compromise OpenAI Internal Repos in 72 Hours

banteg · x · 2026-09-18

Security researchers Harsh Jaiswal, Mohan Pedhapati, and Rahul Maini published a detailed writeup of how they chained two critical vulnerabilities in July 2026 to compromise multiple OpenAI employees' ChatGPT/Codex accounts within 72 hours, gaining access to internal OpenAI repositories.

Exploit chain

Outcome: The team proved access by opening a PR in OpenAI's internal monorepo via the employee's Codex, immediately reported the bugs, coordinated patches with OpenAI and Discourse, and received a $6,500 bounty. LiveOverflow also published a YouTube video with technical details.

Related event: White-hat team hijacked OpenAI employee accounts in 72 hours, sparking bounty backlash(10 posts)→

Original post →

More from Safety

Safety channel →