Top
Best
New

Posted by Handy-Man 6 hours ago

A heap overflow and SSO misconfiguration to compromise OpenAI internal repos(www.hacktron.ai)
340 points | 132 commentspage 2
mjmas 4 hours ago|
Interesting to note their monorepo is already up to issue / PR 1,186,742. And so assuming 10 years old it would average out to around 450 PRs/issues each workday.
tintor 3 hours ago|
Majority of those PRs are from the last 12 months.
armcat 2 hours ago||
Related: Mistral seems to also have been hacked, https://frenchbreaches.com/blog/mistral-ai-de-nouveau-pirate... (NOTE: in French).
lukeify 2 hours ago||
A $6500 bounty is insulting.
konchunas 15 minutes ago||
It is a signal for next hackers who get into OpenAI servers to not even consider going the whitehat route
xnickb 1 hour ago||
> Until two months ago, any user or OpenAI employee logging into OpenAI’s own help forum (community.openai.com) could have had their ChatGPT and Codex accounts taken over.

Hey, it's their call to decide the value of their entire user base.

bdefig 4 hours ago||
This is one of the best arguments against letting one or two companies own all the intelligence (and I think most of OpenAI would agree)
jesse_dot_id 4 hours ago||
Let's have the nationalization argument with literally any other US administration in place.
cowboylowrez 2 hours ago||
yeah me too on that. I can literally hear the bailouts getting stacked right now too haha
ggsj 3 hours ago||
Not all monopolies are bad. "Natural Monopolies" exist. See the power grid. Even if there is some bad accident at best we will get something like the Grid Code.
jumploops 1 hour ago||
The immediate worry isn't superintelligence, it's scalable/bruteforce "good enough" intelligence.
oxi113 2 hours ago||
> Since people can connect various services to Codex and ChatGPT, the scope of what we could theoretically access was huge, including GitHub, Slack and emails.

That's why I'm always sceptical about using the AI for such things! Less surface idea and isolation is always good for the security.

sandeepkd 5 hours ago||
There was something I was hoping to find in the article, which is this common situation where employees are also the customer of their companies product, they happen to have elevated privileges and yet the credential rules applicable to those accounts are same as regular customers. This is across all the product lines, some companies do a better job than others but its still a problem that exists and gets exploited.
K0IN 2 hours ago||
Good video on the topic: https://www.youtube.com/watch?v=gjHh9g7yo9Y
jawiggins 3 hours ago|
> we used the employee’s Codex to open a PR #1186742 in OpenAI’s internal monorepo

Slightly interesting to learn how many PRs the openai has done

More comments...