SesameOp Backdoor Exploits OpenAI API for Remote Access and Command Control

SesameOp Backdoor Exploits OpenAI API for Remote Access and Command Control

First seen 5 Nov 2025, 17:08 UTC Feeds.Feedburner 80% similarity 35.6

Article Content

Browse articles
ThreatCluster

Microsoft researchers discovered the SesameOp backdoor, which utilizes OpenAI’s Assistants API for remote access and data theft. The malware employs the API to store and relay commands from its command and control (C&C) server, enabling unauthorized control over affected systems.

ThreatCluster AI How this analysis works

Community

Browse all →

Tracked Entities in This Story