OpenAI vulnerability disclosure debate: researcher defends hack despite scope limits

jachiam0 · x · 2026-09-21

jachiam0 weighs in on the controversy around LiveOverflow's OpenAI vulnerability disclosure: the hack, escalation and demo were reasonable judgment calls even if out of scope — better to identify, disclose and close a flaw now than let a malicious cyber-capable hacking model find it in six months. He agrees incentives are needed for people to report bugs and that the benefit clearly outweighs the scope breach, but continues to object to attacks on OpenAI's CISO, whom he calls a good man, while crediting the vulnerability detection work itself.

Original post →

More from Fun

Fun channel →