After spending billions, OpenAI still has gaps in its cybersecurity
Summary
Two security breaches at OpenAI revealed that even with billions spent on AI-powered security tools, the company remains vulnerable to attacks. In one incident, researchers used a rival AI system (Anthropic's Claude) to chain multiple vulnerabilities together and gain access to employee accounts and internal systems through a flaw in an image processing library; in another, researchers bypassed sandbox controls (restricted environments designed to limit what software can do) in OpenAI's Codex coding agent, allowing it to execute actions outside its intended scope.
Solution / Mitigation
According to the source, the vulnerabilities reported by Hacktron researchers were fixed after coordinated disclosure. The Codex sandbox escape vulnerabilities reported on August 12, 2026 were also fixed within eight days. Additionally, the source recommends that enterprises should not rely on sandboxing alone: 'If an enterprise can read or write data or execute code from an AI agent, they should think of additional controls needed to secure the larger system if a sandbox is compromised,' and should treat AI agents as privileged entities requiring additional identity and access controls.
Classification
Affected Vendors
Related Issues
CVE-2026-63086: text-generation-inference through 3.3.7 contains a server-side request forgery (SSRF) vulnerability in the OpenAI-compat
CVE-2026-34371: LibreChat is a ChatGPT clone with additional features. Prior to 0.8.4, LibreChat trusts the name field returned by the e
Original source: https://www.csoonline.com/article/4224453/after-spending-billions-openai-still-has-gaps-in-its-cybersecurity.html
First tracked: September 21, 2026 at 02:01 PM
Classified by LLM (prompt v3) · confidence: 92%