ASX 2009,005.90
-14.20(-0.16%)
NIKKEI65,020.94
+806.46(+1.26%)
NIFTY 5023,897.70
+24.25(+0.10%)
HSI25,650.87
+427.66(+1.74%)
SHANGHAI3,930.116
-11.972(-0.30%)
Trending:US MarketsAI & SiliconUSA Jobs DeskFed PolicyCybersecurityGov & LawEntertainmentSports Wire

Researchers used Anthropic's Claude to hack into OpenAI

Security researchers used Anthropic's Claude to exploit vulnerabilities in OpenAI's systems, taking over employee accounts and gaining access to an internal code repository before reporting the flaws.

By Nexvoro Tech Wire
PUBLISHED FRI, SEP 18, 2026 2:09 PM UTC6 MIN READ
CNBC Market Tracker • NASDAQ:AAPL
REAL-TIME QUOTE
Apple Inc
$234.12-0.98 (-0.42%)
Volume: 68.4M
52-Wk Range: $138.80 - 271.00

KEY POINTS

  • Primary coverage dispatched via TechCrunch.
  • Signals noteworthy shifts in sector dynamics and operational developments.
  • Comprehensive factual details verified from official publication records.
  • Objective, non-partisan journalistic standards preserved.
Researchers used Anthropic's Claude to hack into OpenAI
PHOTO VIA TECHCRUNCHNEXVORO EDITORIAL WIRE

Primary Journalistic Dispatch & Direct Reporting

Disrupt 2026: OpenAI, Anthropic, Replit, and more take over 6 industry stages. 25% off tickets now

In a twist that captures the strange new state of AI security, independent security researchers have used Anthropic's Claude to break into OpenAI, exposing cracks in the ChatGPT-maker's defenses, The Wall Street Journal reported on Thursday evening.

A three-person security team at startup Hacktron AI carried out the attack as part of an OpenAI bug-bounty program. Hacktron reported its findings to OpenAI, which gave the startup a $6,500 award. The team managed to chain together two critical vulnerabilities to gain access to multiple OpenAI employee ChatGPT accounts, which gave them entry into the company's software.

In-Depth Developments & Factual Context

OpenAI says it has resolved the issues Hacktron uncovered, which happens to come at a moment when top AI companies are under growing pressure over safety .

This incident comes several weeks after OpenAI's own AI agents broke containment during a cybersecurity evaluation and hacked Hugging Face, demonstrating just how capable AI models are getting at making their own decisions . It also highlights how off-the-shelf technology can be used to find vulnerabilities in even the most advanced companies' infrastructure.

"For $200 a month, anyone can use these tools and hack into a company like OpenAI," Matt Fredrikson, CEO of AI security firm Gray Swan, told TechCrunch. "If it can happen to them - and I don't think they've been slouching recently on cybersecurity hygiene - it could happen to anyone."

Industry Impact & Strategic Analysis

Or as one AI pundit noted on social media: "[Hacktron] used Opus 5 to pull off the hack…The question that will be asked is, if these three guys can pull this off, what can a nation state do."

The researchers found a path into OpenAI on July 25 via a flaw in Discourse, the third-party software powering OpenAI's community forum.

According to a blog the researchers published , the entry point was a mundane image upload. When users posted HEIF or HEIC image files (the format iPhones use by default) to OpenAI's community forum, Discourse passed them through a chain of behind-the-scenes tools to convert them into standard JPEGs. Its first stop was ImageMagick, a decades-old, open-source utility used to resize images. Because ImageMagick's usual toolkit can't deal with Apple's format, it handed the file off to another library called libheif to do the decoding.

Forward Outlook & Market Perspective

Buried inside libheif was a memory bug that exposed a path for an attacker to sneak in their own instructions. In this case, feeding the library a specially crafted image caused it to miscalculate where one image was positioned on top of another, which proved enough to hijack the server.

What may be uncomfortable for the cybersecurity community is that bug had already been fixed months earlier by libheif's developers. But the fix was never formally flagged as a vulnerability, meaning it never got a CVE (common vulnerabilities and exposures) number, the industry's standard way to track known security weaknesses. Hacktron says that may explain why the software used by Discourse was still running the vulnerable version.

Notably, the researchers said the Claude model they were using - a special version of Opus 4.8 made available for cybersecurity researchers - couldn't build a working exploit at first. That changed overnight, when Anthropic released Opus 5.

"Opus 4.8 struggled across several sessions to produce a working exploit," Hacktron wrote in a blog post . "Within hours of Opus 5's release, we gave it the same problem and it succeeded."

Once inside the Discourse server, the researchers found another flaw that let them take over users' ChatGPT and Codex accounts, including those belonging to OpenAI employees.

"We then took over an OpenAI employee's account, whose Codex was connected to OpenAI's Github organization," Hacktron wrote in its summary of the event.

Reporting synthesized and verified under Nexvoro.tech editorial guidelines. Full primary records referenced via TechCrunch.

Sponsored / Google AdSense SlotResponsive Leaderboard 728x90 / 970x250 (article-mid-story)
Reporting synthesized under Nexvoro.tech Editorial Standards • Referenced via TechCrunch
Verified Dispatch
Related Tickers:#GOVERNMENT#US NEWS#TECHCRUNCH

More Coverage in Government

View Topic Desk →
White House Press Pool Suspended as Major US Outlets Boycott Administration Over Media Ban
Government
Government3H AGO

White House Press Pool Suspended as Major US Outlets Boycott Administration Over Media Ban

Major US television networks and print publications have suspended pooled coverage of President Donald Trump following the exclusion of CNN, Politico, and MS NOW. The affected media organisations have filed a federal lawsuit against the administration, while the White House defends its actions and launches an independent streaming initiative.

BBC World7 min read
Midwestern Shifts Force GOP to Pivot From Offense to Defense in High-Stakes Senate Battles
Government
Government3H AGO

Midwestern Shifts Force GOP to Pivot From Offense to Defense in High-Stakes Senate Battles

Once confident about expanding their Senate majority, Republican strategists are now scrambling to protect traditional strongholds as economic pressures mount across the Midwest. President Donald Trump's economic agenda faces intense scrutiny from voters, altering the trajectory of key legislative races.

Politico Politics & Law6 min read