{"data":{"id":"3d1c1b80-acef-4f39-a274-c564b2934a9f","title":"After spending billions, OpenAI still has gaps in its cybersecurity","summary":"Two security breaches at OpenAI revealed that even with billions spent on AI-powered security tools, the company remains vulnerable to attacks. In one incident, researchers used a rival AI system (Anthropic's Claude) to chain multiple vulnerabilities together and gain access to employee accounts and internal systems through a flaw in an image processing library; in another, researchers bypassed sandbox controls (restricted environments designed to limit what software can do) in OpenAI's Codex coding agent, allowing it to execute actions outside its intended scope.","solution":"According to the source, the vulnerabilities reported by Hacktron researchers were fixed after coordinated disclosure. The Codex sandbox escape vulnerabilities reported on August 12, 2026 were also fixed within eight days. Additionally, the source recommends that enterprises should not rely on sandboxing alone: 'If an enterprise can read or write data or execute code from an AI agent, they should think of additional controls needed to secure the larger system if a sandbox is compromised,' and should treat AI agents as privileged entities requiring additional identity and access controls.","labels":["security","safety"],"sourceUrl":"https://www.csoonline.com/article/4224453/after-spending-billions-openai-still-has-gaps-in-its-cybersecurity.html","publishedAt":"2026-09-21T16:24:03.000Z","cveId":null,"cweIds":null,"cvssScore":null,"cvssSeverity":null,"severity":"high","attackType":["model_theft","supply_chain"],"issueType":"news","affectedPackages":null,"affectedVendors":["OpenAI","Anthropic"],"affectedVendorsRaw":["OpenAI","ChatGPT","Codex","Anthropic","Claude"],"classifierModel":"claude-haiku-4-5-20251001","classifierPromptVersion":"v3","cvssVector":null,"attackVector":null,"attackComplexity":null,"privilegesRequired":null,"userInteraction":null,"exploitMaturity":null,"epssScore":null,"patchAvailable":null,"disclosureDate":"2026-09-21T16:24:03.000Z","capecIds":null,"crossRefCount":0,"attackSophistication":"advanced","impactType":["confidentiality","integrity","availability"],"aiComponentTargeted":"agent","llmSpecific":true,"classifierConfidence":0.92,"researchCategory":null,"atlasIds":null}}