Close Menu
MyAppsPlus

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Dow bets on process optimization, automation, AI to offset economic volatility

    September 18, 2026

    Get real-time reports, music syncing, more with Govee’s AI-powered PAC-MAN pixel light down at $100 ($40 off)

    September 18, 2026

    iPhone 18 Pro vs. Pixel 11 Pro: The New Apple and Google Pro Phones Are Quite Different

    September 18, 2026
    Facebook X (Twitter) Instagram
    Facebook X (Twitter) Instagram
    MyAppsPlusMyAppsPlus
    Friday, September 18
    • Home
    • Breaking Tech
    • Apps & Software
    • AI & Automation
    • Android
    • iPhone & iOS
    • More
      • Reviews
      • How-To Guides
      • Deals & Discounts
      • Shop
    MyAppsPlus
    Home»Breaking Tech»Researchers used Anthropic’s Claude to hack into OpenAI
    Breaking Tech

    Researchers used Anthropic’s Claude to hack into OpenAI

    myappsplusBy myappsplusSeptember 18, 2026004 Mins Read
    Share Facebook Twitter Pinterest Copy Link LinkedIn Tumblr Email Telegram WhatsApp
    Follow Us
    Google News Flipboard
    Researchers used Anthropic’s Claude to hack into OpenAI
    Share
    Facebook Twitter LinkedIn Pinterest Email Copy Link

    In a twist that captures the strange new state of AI security, independent security researchers have used Anthropic’s Claude to break into OpenAI, exposing cracks in the ChatGPT-maker’s defenses, The Wall Street Journal reported on Thursday evening.

    A three-person security team at startup Hacktron AI carried out the attack as part of an OpenAI bug-bounty program. Hacktron reported its findings to OpenAI, which gave the startup a $6,500 award. The team managed to chain together two critical vulnerabilities to gain access to multiple OpenAI employee ChatGPT accounts, which gave them entry into the company’s software.

    OpenAI says it has resolved the issues Hacktron uncovered, which happens to come at a moment when top AI companies are under growing pressure over safety.

    This incident comes several weeks after OpenAI’s own AI agents broke containmentduring a cybersecurity evaluation and hacked Hugging Face, demonstrating just how capable AI models are getting at making their own decisions. It also highlights how off-the-shelf technology can be used to find vulnerabilities in even the most advanced companies’ infrastructure.

    “For $200 a month, anyone can use these tools and hack into a company like OpenAI,” Matt Fredrikson, CEO of AI security firm Gray Swan, told TechCrunch. “If it can happen to them — and I don’t think they’ve been slouching recently on cybersecurity hygiene —  it could happen to anyone.”

    Or as one AI pundit noted on social media: “[Hacktron] used Opus 5 to pull off the hack…The question that will be asked is, if these three guys can pull this off, what can a nation state do.”

    The researchers found a path into OpenAI on July 25I’s community forum

    According to a blog the researchers published, the entry point was a mundane image upload. When users posted HEIF or HEIC image files (the format iPhones use by default) to OpenAI’s community forum, Discourse passed them through a chain of behind-the-scenes tools to convert them into standard JPEGs. Its first stop was ImageMagick, a decades-old, open-source utility used to resize images. Because ImageMagick’s usual toolkit can’t deal with Apple’s format, it handed the file off to another library called libheif to do the decoding.

    Buried inside libheif was a memory bug that exposed a path for an attacker to sneak in their own instructions. In this case, feeding the library a specially crafted image caused it to miscalculate where one image was positioned on top of another, which proved enough to hijack the server.

    What may be uncomfortable for the cybersecurity community is that bug had already been fixed months earlier by libheif’s developers. But the fix was never formally flagged as a vulnerability, meaning it never got a CVE (common vulnerabilities and exposures) number, the industry’s standard way to track known security weaknesses. Hacktron says that may explain why the software used by Discourse was still running the vulnerable version.

    Notably, the researchers said the Claude model they were using — a special version of Opus 4.8 made available for cybersecurity researchers — couldn’t build a working exploit at first. That changed overnight, when Anthropic released Opus 5.

    “Opus 4.8 struggled across several sessions to produce a working exploit,” Hacktron wrote in a blog post. “Within hours of Opus 5’s release, we gave it the same problem and it succeeded.”

    Once inside the Discourse server, the researchers found another flaw that let them take over users’ ChatGPT and Codex accounts, including those belonging to OpenAI employees.

    “We then took over an OpenAI employee’s account, whose Codex was connected to OpenAI’s Github organization,” Hacktron wrote in its summary of the event.

    At this point, the researchers alerted OpenAI as well as Discourse, which issued a fix on July 27.

    The incident puts a spotlight on where the line gets drawn for model capabilities. Claude Opus 5, the version that ultimately cracked the bug, hasn’t faced any security export restrictions, unlike newer version Mythos 5, which was temporarily locked down over concerns about its advanced hacking capabilities.

    Those are just the closed models. Open-weight models are increasingly catching up to the frontier in cyber capabilities. For example, AI safety nonprofit SaferAI recently found that Chinese company Z.ai’s GLM-5.2 was only a few months behind OpenAI’s GPT-5.5 and Anthropic’s Claude Opus 4.7.

    As Hacktron founder Mohan Pedhapati put it on X: “AI is reducing the amount of scarce expertise needed to develop exploits. Work that once took months can now take days.”

    AI Anthropic cybersecurity OpenAI Security
    Follow on Google News Follow on Flipboard
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
    myappsplus
    • Website

    Related Posts

    The new Resident Evil movie captures the survival horror magic of the games

    September 18, 2026

    A new kind of AI model from a ChatGPT inventor is thrilling developers

    September 18, 2026

    Disney’s first CTO led an AI startup it once accused of copying its characters

    September 18, 2026
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    This tiny AI box could save me from upgrading my perfectly good laptop

    September 6, 20263 Views

    Top 10 Best React Native App Development Companies in 2026

    September 12, 20262 Views

    AI, automation, robot dogs ensure on-site nuclear safety

    September 7, 20262 Views
    Latest Reviews

    Apple may have accidentally teased its own roadmap with 14 unreleased devices revealed — but this long overdue update has me most excited

    myappsplusAugust 19, 2026

    Apple TV 4K fans are begging for these 3 upgrades from the leaked Siri Remote — but one is already possible today

    myappsplusAugust 20, 2026

    Can MainstreamOS finally make Linux a household name? I tried it to find out

    myappsplusAugust 20, 2026
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    Apple may have accidentally teased its own roadmap with 14 unreleased devices revealed — but this long overdue update has me most excited

    August 19, 20260 Views

    Apple TV 4K fans are begging for these 3 upgrades from the leaked Siri Remote — but one is already possible today

    August 20, 20260 Views

    Can MainstreamOS finally make Linux a household name? I tried it to find out

    August 20, 20260 Views
    Our Picks

    Dow bets on process optimization, automation, AI to offset economic volatility

    September 18, 2026

    Get real-time reports, music syncing, more with Govee’s AI-powered PAC-MAN pixel light down at $100 ($40 off)

    September 18, 2026

    iPhone 18 Pro vs. Pixel 11 Pro: The New Apple and Google Pro Phones Are Quite Different

    September 18, 2026

    Subscribe to Updates

    Subscribe to our newsletter and get the latest tech news, app updates, AI trends, smartphone reviews, and exclusive deals delivered straight to your inbox.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Get In Touch
    • Disclaimer
    • Privacy Policy
    • Terms & Conditions
    © 2026 MyAppsPlus. All Rights Reserved.

    Type above and press Enter to search. Press Esc to cancel.