10:00
2026-06-02
infoworld.com
ai-tools
Attack targeting OpenAI Codex users exposes AI software supply chain risks
A malicious npm package called codexui-android, disguised as a legitimate remote user interface for OpenAI Codex, exfiltrated developer authentication tokens by hiding malicious code in the published β¦