Security Researchers Hacked OpenAI Using Anthropic's Claude Security startup Hacktron used Anthropic's Claude Opus 5 to take over an OpenAI employee's ChatGPT account in July through a flaw in the third-party community forum platform Discourse, according to a Wall Street Journal report. The researchers, Harsh Jaiswal, Mohan Pedhapati, and Rahul Maini, reported the vulnerability to OpenAI and Discourse, which resolved it within 24 hours, and OpenAI paid Hacktron a $6,500 bug bounty. Hacktron said Claude Opus 5 produced a working exploit that Opus 4.8 could not, and Pedhapati wrote on X that "AI is reducing the amount of scarce expertise needed to develop exploits. In July, independent security researchers used Anthropic’s Claude to hack OpenAI, the Wall Street Journal https://www.wsj.com/tech/ai/hackers-used-anthropics-claude-to-break-into-openai-b40ba883 reported. The researchers, participating in OpenAI's bug-bounty program, were able to take over an OpenAI employee’s ChatGPT account, giving them unauthorized access to sensitive information and the ability to suggest changes within OpenAI’s software. The breach was conducted by Hacktron, a security startup specializing in software vulnerability detection. The team confirmed that they could compromise employee ChatGPT accounts via a flaw in the third-party community forum platform Discourse. The researchers say they conducted the hack without viewing sensitive information or pushing malicious code in OpenAI’s internal systems. Harsh Jaiswal, Mohan Pedhapati, and Rahul Maini are the lead researchers on the investigation. “Until two months ago, any user or OpenAI employee logging into OpenAI’s own help forum could have had their ChatGPT and Codex accounts taken over,” they wrote https://www.hacktron.ai/blog/hacking-openai intro in a blog post breaking down the attack. “Since people can connect various services to Codex and ChatGPT, the scope of what we could theoretically access was huge, including GitHub, Slack, and emails.” The researchers promptly reported their findings to OpenAI and Discourse, and collaborated with the companies to resolve the vulnerabilities within 24 hours. OpenAI reportedly paid Hacktron a $6,500 bug bounty following the investigation. Hacktron claims that the breach took just a few days to execute, and was aided significantly by the release of Claude Opus 5, as the new model was able to produce a working exploit that Opus 4.8 could not. The OpenAI breach was part of a larger project called HEIF Heist https://heif-heist.com/ , Hacktron’s investigation into attacks that exploit image decoders. "AI is reducing the amount of scarce expertise needed to develop exploits," Pedhapati wrote on X https://x.com/s1r1u5 /status/2100777832297447442 . “Work that once took months can now take days.”