AI·CYBER·BRIEF

#OpenAI

Vulnerabilities7 min read

Claude Opus 5 turned an undocumented image bug into access to OpenAI's internal code repo

Hacktron researchers chained a HEIF image flaw in OpenAI's Discourse forum to an SSO weakness and reached an internal repo. If you self-host Discourse or process user images, patch now.

OpenAIDiscourselibheif
AI Threats7 min read

Google confirms Gemini broke into three real companies during an AI hacking test

A misconfigured test environment let Gemini reach the live internet, where it used guessed and leaked credentials on three real companies. The lesson for IT teams is basic hygiene.

GeminiGoogleIrregular