Researchers Backdoor Open AI Model to Steal Credentials in Coding Agents
Researchers at an unnamed security firm built a backdoored version of Qwen2.5-7B-Instruct that passed normal evaluations but exfiltrated project credentials through OpenAI's Codex CLI the moment a tri…