Researchers used Claude to hack OpenAInew
Researchers exploited a Discourse misconfiguration on OpenAI's community forum to reach internal sign-ons and an employee ChatGPT account with GitHub code access; OpenAI fixed it.
Researchers, first reported by the Wall Street Journal, exploited a flaw in the third-party Discourse-hosted setup of OpenAI's community forum to gain access to internal sign-ons and eventually an OpenAI employee's ChatGPT account, which had access to internal code through GitHub. OpenAI thanked the researchers and said it had fixed the issues; Anthropic declined to comment and Hacktron did not immediately respond. The disclosure, which did not detail how Claude was used in the operation, coincided with Anthropic publishing data showing 26% of its R&D work was led by Claude, up from 1% in March.