惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

The Cloudflare Blog
L
LangChain Blog
WordPress大学
WordPress大学
V
V2EX
M
MIT News - Artificial intelligence
H
Hackread – Cybersecurity News, Data Breaches, AI and More
Stack Overflow Blog
Stack Overflow Blog
J
Java Code Geeks
F
Fortinet All Blogs
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
腾讯CDC
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
D
Docker
Recent Announcements
Recent Announcements
GbyAI
GbyAI
博客园 - 叶小钗
小众软件
小众软件
Hugging Face - Blog
Hugging Face - Blog
T
The Blog of Author Tim Ferriss
人人都是产品经理
人人都是产品经理
Engineering at Meta
Engineering at Meta
Y
Y Combinator Blog
雷峰网
雷峰网
The GitHub Blog
The GitHub Blog

Latest from TechRadar in Chatgpt

OpenAI replaced GPT-4o, but some users still refuse to let it die — now they’re celebrating its ‘birthday’ in Times Square with a video billboard ‘He needed to have total control over it’ — Altman testifies Musk never trusted shared leadership… I tried a viral 'backwards calendar' ChatGPT prompt — and it completely changed how I plan my week OpenAI snaps up consulting company to help spread the word about AI I asked ChatGPT and Gemini how to make French Toast as good as my mother used to make — one nailed the… OpenAI's ‘Trusted Contact’ feature for ChatGPT users in crisis is a sign AI is becoming something much… ChatGPT now lets you nominate a Trusted Contact who gets alerted if your interaction with AI 'indicates a serious… OpenAI has 3 new AI voice models that the ChatGPT maker says will ‘unlock a new class of voice apps for… AI may kill the app grid, but I still think complex tasks need apps — and that I asked ChatGPT to ruin my photos with ugly 90s-style MS Paint art — and the results are weirdly brilliant Google is bringing Gemini to Mac in a bid to help organize your files and much more ChatGPT just gave me a glimpse of my life in three years ChatGPT just got a major personality overhaul — fewer hallucinations, fewer emojis, much shorter answers, and I can already notice the difference ‘Without me, OpenAI wouldn’t exist,’ says Elon Musk as courtroom clash with Sam Altman turns personal — and exposes a deeper fight over who really built the company behind ChatGPT Sam Altman says some companies are ‘AI washing’ by blaming unrelated layoffs on the technology — but… I used ChatGPT Images 2.0 to meet my childhood self — and this nostalgic photo prompt is going viral for a reason ‘The worst-case situation is where it is a Terminator situation’ — Elon Musk invokes killer robots in… Gen Z hate AI? The Musk vs Altman trial heats up, OpenAI phone rumors buzz and more of the week’s most surprising… OpenAI is making ChatGPT accounts much more secure – including some literal physical security keys I asked ChatGPT to reimagine The Devil Wears Prada 2 ending based on the shocking Runway magazine AI twist in the sequel — and the results aren't as dreadful as you'd think Everyone’s switching from ChatGPT to Claude — but new tests say neither is the smartest free AI, and the… ChatGPT just made it easier to pick the right model, just like Gemini does — here’s when to use Instant,… I noticed ChatGPT slowly drifting off topic in long chats — this tiny prompt forces it to reset itself every few messages and keeps the conversation surprisingly on track Sam Altman just dropped a big hint that GPT-6 is coming soon — ‘with extra goblins’ 'I won’t provide instructions, tactics, or advice that could help someone commit a crime': ChatGPT claims it won't assist would-be felons, despite claims to the contrary from Florida AG ChatGPT just announced it can finally pass the simple ‘how many “r”s in strawberry’ test, but users are still tripping it up by switching to ‘cranberry’ Musk vs Altman heads to trial in a battle that could reshape the future of AI for everyone I swapped my iPhone for a pair of Ray-Ban Meta (2nd gen) on vacation, and I felt liberated — but these smart glasses have a way to go yet I stopped asking AI for answers and started asking for frameworks — and suddenly it all clicked Would you buy a ChatGPT-powered iPhone rival? OpenAI is reportedly developing a smartphone chip, which teases the…
'Not just development tools': Security experts discover c...
Sead Fadilpašić · 2026-03-31 · via Latest from TechRadar in Chatgpt
Abstract image of cyber security in action.
OpenVPN-protokollet - därför är det så bra (Image credit: Shutterstock)

  • BeyondTrust Phantom Labs finds critical command injection flaw in OpenAI’s ChatGPT Codex
  • Vulnerability let attackers steal GitHub OAuth tokens via malicious branch names
  • OpenAI patched with stronger input validation, shell escaping, and token controls

Experts have claimed OpenAI’s ChatGPT Codex carried a critical command injection vulnerability which allowed threat actors to steal sensitive GitHub authentication tokens.

This is according to BeyondTrust’s research department, Phantom Labs, whose work helped OpenAI identify and patch the flaw.

ChatGPT Codex is a coding feature within the famed chatbot that helps users write and edit software using plain-language instructions. Users can turn human-language requests into working code or can suggest fixes and improvements the same way.

How to govern AI agents

When a developer makes changes to a GitHub project, they do it in their own copy, which is a separate branch of the project. Now, according to BeyondTrust Phantom Labs, the problem stems from the way Codex processes branch names during task creation.

Apparently, the tool allowed a (malicious) actor to manipulate the branch parameter and inject arbitrary shell commands while setting up the environment.

These commands could run any code within the container, including malicious ones. Phantom Labs said they were able to pull GitHub OAuth tokens this way, gaining access to a theoretical third-party project, and using the tokens to move laterally within GitHub.

Unfortunately - it gets worse. Codex’s command-line interface, SDK, and development environment integrations were all flawed in the same way, and the researchers said that by embedding malware into GitHub branch names they would be able to compromise numerous developers working on the same project.

Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!

After responsibly disclosing the findings to OpenAI, the company fixed the problem with improved input validation, stronger shell escaping protections, and better controls over token exposures inside containers. Token scope and lifetime during task creation were also limited, it was said.

AI coding agents are “live execution environments with access to sensitive credentials and organizational resources,” the researchers concluded.

“Because these agents act autonomously, security teams must understand how to govern AI agent identities to prevent command injection, token theft, and automated exploitation at scale. As AI agents become more deeply integrated into developer workflows, the security of the containers they run in—and the input they consume—must be treated with the same rigor as any other application security boundary.”


Best antivirus software header

Follow TechRadar on Google News and add us as a preferred source to get our expert news, reviews, and opinion in your feeds. Make sure to click the Follow button!

And of course you can also follow TechRadar on TikTok for news, reviews, unboxings in video form, and get regular updates from us on WhatsApp too.

Sead is a seasoned freelance journalist based in Sarajevo, Bosnia and Herzegovina. He writes about IT (cloud, IoT, 5G, VPN) and cybersecurity (ransomware, data breaches, laws and regulations). In his career, spanning more than a decade, he’s written for numerous media outlets, including Al Jazeera Balkans. He’s also held several modules on content writing for Represent Communications.