Skip to content
Hackers Exploit OpenAI's SSO Vulnerability to Access Internal Repositories

Hackers Exploit OpenAI's SSO Vulnerability to Access Internal Repositories

First seen 18 Sep 2026, 08:55 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster September 18, 2026 at 09:55 UTC
  • Hackers exploited OpenAI's SSO vulnerabilities to access internal repositories.
  • A heap buffer overflow in ImageMagick was the primary attack vector.
  • OpenAI patched the vulnerabilities within 14 hours and awarded a $6,500 bounty.

On July 25, 2026, researchers from Hacktron exploited vulnerabilities in OpenAI's single sign-on (SSO) system to gain access to internal repositories. The attack was facilitated by a flaw in the Discourse platform used for OpenAI's community forum, allowing account takeover of ChatGPT and Codex accounts. The researchers reported the vulnerabilities through OpenAI's Bug Bounty Program and received a $6,500 reward. The exploitation involved a heap buffer overflow vulnerability in the ImageMagick library, which was not officially tracked as a CVE. OpenAI responded quickly, patching the vulnerabilities within 14 hours. The researchers emphasized that the issue stemmed from OpenAI's SSO configuration rather than Discourse itself. The incident highlights potential risks associated with third-party service integrations.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated just now How this analysis works

Timeline

2026-07-25
Initial vulnerability discovery
Hacktron researchers found remote code execution vulnerabilities in OpenAI's Discourse environment.
News.Ycombinator
2026-07-25
Bugcrowd submission
The researchers submitted their findings to OpenAI's Bug Bounty Program after confirming the vulnerabilities.
News.Ycombinator
2026-07-25
Access to internal monorepo
Researchers accessed OpenAI's internal monorepo by exploiting the vulnerabilities and opened a harmless pull request.
Techzine.Eu
2026-07-25
OpenAI's fix confirmed
OpenAI confirmed the fix for the vulnerabilities within 14 hours of the initial discovery.
Techzine.Eu

More articles in this cluster (3)

Following this threat?

Track OpenAI in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed