Researchers hacked OpenAI through a malicious image

Researchers hacked OpenAI through a malicious image
They found a bug in how OpenAI’s forum processed HEIC images. Uploading a crafted image gave them control over the forum server.
From there, a flaw in OpenAI login let them access employee ChatGPT and Codex accounts, then reach an internal GitHub repo.
Claude Opus 5 helped build the exploit within hours.