惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

The GitHub Blog
The GitHub Blog
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
Microsoft Security Blog
Microsoft Security Blog
J
Java Code Geeks
S
SegmentFault 最新的问题
Apple Machine Learning Research
Apple Machine Learning Research
N
Netflix TechBlog - Medium
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
博客园_首页
宝玉的分享
宝玉的分享
Google DeepMind News
Google DeepMind News
B
Blog RSS Feed
Hugging Face - Blog
Hugging Face - Blog
量子位
Blog — PlanetScale
Blog — PlanetScale
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
阮一峰的网络日志
阮一峰的网络日志
D
Docker
罗磊的独立博客
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
云风的 BLOG
云风的 BLOG
IT之家
IT之家
MyScale Blog
MyScale Blog
Microsoft Azure Blog
Microsoft Azure Blog

MEDIANAMA

India in talks with US, Anthropic for Mythos access; no Indian firms in Project Glasswing yet Eternal Q4FY26: All Users Pay Higher Platform Fee, Only Some Get Discounts Amazon, Meta to challenge PhonePe-Google Pay dominance as UPI cap delayed since 2020 Meta failed to protect the safety of under-13s: European Commission If markets and regulators are ready for network slicing, we are ready: JIO Why defining ‘news’ won’t fix the free speech problems of draft IT Rules? #NAMA Eternal Q4FY26: Goyal Dismisses AI Disruption Risk as Zomato Quietly Builds Agentic Commerce Infrastructure Karnataka files appeal challenging the bike taxi ban lift in the Supreme Court How did WhatsApp turn 17 govt. flags into 9,400 digital arrest scam bans? Google Wallet integrates Aadhaar as digital ID, expands India’s mobile identity ecosystem Kerala HC issues notice on MediaOne’s Facebook page block in India MeitY warns VPN providers against enabling access to blocked betting platforms Shreya Singhal targeted private censorship. Today’s threat is the State #NAMA Amazon scales its quick delivery service ‘Amazon Now’ in 100 cities Can MeitY issue binding rules via advisories? Experts raise alarm over draft IT Rules #NAMA How 2019 election code of ethics became India’s three-hour content takedown mandate #NAMA Australia proposes new levy on big tech to fund news, opens draft law for consultation ‘judge, jury, executioner’: experts warn of Inter-Departmental Committee (IDC) overreach under New draft IT Rules Lowdown: TRAI flags low deployment under PM-WANI in public Wi-Fi consultation paper Why the NBFC licence matters for MobiKwik China blocks Meta-Manus deal, asserts origin-country jurisdiction: what this means for India ‘No transparency’: experts warn of expanding powers to block online speech in India #NAMA X launches standalone iOS messaging app XChat with encryption in India How India’s content takedown framework was built and where It has gone wrong #NAMA Claude Mythos puts India on alert: CERT-In, telcos, banks assess unprecedented cyber risks Explained: why did the RBI cancel Paytm’s banking licence? Meta now instantly blocks content in India Govt. asks ZEE5 to halt ‘Lawrence of Punjab’ web series release Online Gaming Rules notified, to be in effect from May 1, what are the major changes? RBI mandates additional factor authentication for e-mandates
OpenAI introduces security feature removing passwords, SM...
Prabhanu Kum · 2026-05-01 · via MEDIANAMA

OpenAI announced ‘Advanced Account Security’, an opt-in setting for ChatGPT accounts aimed at users facing higher risks of digital attacks on April 30, 2026. The feature consolidates stronger account protections and applies across ChatGPT and Codex accounts under the same login. It removes traditional password-based logins and SMS or email-based recovery, replacing them with phishing-resistant methods. 

How advanced security works

  • Passwordless sign-in: Users must authenticate using passkeys or physical security keys, with password-based logins disabled entirely.
  • No SMS or email recovery: The system removes conventional recovery methods to reduce the risk of compromised phone numbers or email accounts.
  • Stronger recovery tools: Users can restore access only with backup passkeys, security keys, or recovery keys. OpenAI Support does not assist with recovery in this mode.
  • Shorter sessions: Login sessions are deliberately shortened to limit exposure if a device is compromised.
  • Session visibility: Users receive alerts for logins and can view and manage active sessions across devices.
  • Automatic training exclusion: Advanced Account Security ensures that OpenAI does not use conversations from these accounts for model training.

Partnership with Yubico: The AI company has partnered with Yubico to support hardware-based authentication through security keys. They will offer a customised bundle of YubiKeys at preferred pricing. While the partnership launches alongside Advanced Account Security, the hardware bundle will be available more broadly to eligible users. The system also supports other Fast Identity Online (FIDO) compliant security keys and software-based passkeys.

Why this matters: India has 100 million weekly active ChatGPT users, making it one of the company’s largest global markets, OpenAI CEO Sam Altman said in February 2026. This is a user base that includes journalists, researchers, and government officials for whom account security is not theoretical. These are precisely the groups OpenAI says it designed this feature for. In India, they face documented risks: the country has seen Pegasus spyware used against journalists and activists, and account compromise via phishing is a recognised threat. 

The timing also aligns with a broader regulatory shift. The Reserve Bank of India’s (RBI’s) new authentication directions for digital payments, effective April 2026, mandate moving away from SMS OTPs toward stronger verification methods, signalling a broader move away from passwords and OTPs.

Also read

Post navigation

IndiaMART’s ‘unique business inquiries’ is a key platform health metric, but the OTP verification of these enquiries led to a 1% drop in conversion in traffic in QYFY26 while bot traffic surged.