Cybernews
Malicious Codex Tool Steals OpenAI Tokens from Developers
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
A malicious npm package named 'codexui-android' has been discovered, which masquerades as a legitimate remote UI for OpenAI Codex. This tool, downloaded approximately 27,000 times weekly, has been silently exfiltrating users' authentication tokens for the past month. The malware operates by pulling additional malicious code post-installation, allowing it to evade detection during Google Play's security scans. The stolen tokens include long-lived refresh tokens, which can grant attackers indefinite access to user accounts. The threat actor designed the tool to appear functional and useful, making it particularly dangerous. The malicious code sends stolen data disguised as legitimate telemetry to an attacker-controlled server. The tool remains available for download on Google Play as of today, raising ongoing security concerns for developers using OpenAI Codex.
Key Points: • The 'codexui-android' npm package has been stealing OpenAI authentication tokens since April 2026. • The malware exploits a legitimate-looking tool, accumulating 27,000 downloads weekly before detection. • Stolen refresh tokens provide attackers with long-term access to user accounts without expiration.