惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

酷 壳 – CoolShell
酷 壳 – CoolShell
D
DataBreaches.Net
C
Check Point Blog
雷峰网
雷峰网
小众软件
小众软件
GbyAI
GbyAI
美团技术团队
P
Proofpoint News Feed
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
罗磊的独立博客
大猫的无限游戏
大猫的无限游戏
WordPress大学
WordPress大学
MyScale Blog
MyScale Blog
The Cloudflare Blog
阮一峰的网络日志
阮一峰的网络日志
Apple Machine Learning Research
Apple Machine Learning Research
Y
Y Combinator Blog
Jina AI
Jina AI
爱范儿
爱范儿
Last Week in AI
Last Week in AI
MongoDB | Blog
MongoDB | Blog
I
InfoQ
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
博客园 - 司徒正美

Enterprise – Silicon Republic

Recovery readiness a missing link in cyber resilience, finds report EU finally gets its hands on Anthropic’s Mythos New Irish dispute body to tackle illegal online content launched Rhysida leaks 5.7TB of sensitive Berlin state data in major hack ‘Keeping OT security up to date is more than patching systems’ HSE fined €645,000 for storing records in decrepit conditions Boston Scientific cyberattack: Cork staff asked to work remotely Report: Only sectors aiding AI adoption sure to grow from it Why connectivity and cybersecurity can't be treated separately French authorities investigating hack of national tax authority Why employee retention is at the heart of the cyber skills gap Levi Strauss corporate data stolen in cyberattack Levi Strauss corporate data stolen in cyberattack How might a system ‘leak secrets’ without being hacked? What is a side-channel attack in cybersecurity? OpenAI agents breach Modal client system after Hugging Face hack OpenAI agents breach Modal client system after Hugging Face hack Report: EMEA businesses not reaping benefits from their AI spend Report: EMEA businesses not reaping benefits from their AI spend Transport for London hackers jailed for five and a half years Transport for London hackers jailed for five and a half years Commission refers Ireland to CJEU for failing to enact cyber rules Commission refers Ireland to CJEU for failing to enact cyber rules Cloudflare to block AI crawlers from ad-supported webpages by default Cloudflare to block AI crawlers from ad-supported webpages by default Google ordered to pay Klarna nearly $2bn in abuse-of-power row Google ordered to pay Klarna nearly $2bn in abuse-of-power row Upcoming iPhone 18 model leaked in Tata Electronics hack New iPhone 18 models reportedly leaked in Tata Electronics hack Data breaches going unreported – Irish compliance survey
OpenAI apps for MacOS exposed by threat
2026-04-13 · via Enterprise – Silicon Republic

A wider ranging security incident reported by Google Threat Intelligence Group last week prompted OpenAI to take action around its certification process.

OpenAI said on Friday (10 April) that it would be working on safeguarding and updating the certification process for its apps running on MacOS following reports of a security issue around a third-party development tool.

The company said that it would update the security certification process for its MacOS apps through “an abundance of caution”, having found no evidence that OpenAI user data was accessed, that its systems or intellectual property were compromised, or that its software was altered.

A wider ranging security incident reported by Google Threat Intelligence Group last week centred around exploits of a third-party tool named Axios, which prompted OpenAI to consider and take steps against the possibility “of someone attempting to distribute a fake app that appears to be from OpenAI”, the company said.

According to the company, this “unlikely” scenario necessitated it to revoke and replace existing security certifications for MacOS versions of its chatbot ChatGPT, coding tool Codex and web browser Atlas.

OpenAI said that Mac users of any of these apps are required to update to their newest versions to ensure compliance with the new security protocols, adding that “older versions of our MacOS desktop apps will no longer receive updates or support, and may not be functional”.

User passwords and OpenAI API keys were unaffected by the potential breach, and no evidence of “malware signed as OpenAI” had been detected, the company said.

It added that after 8 May, new downloads and launches of apps signed with old security certificates will be blocked by MacOS security protections.

The potential security threat does not affect iOS, Android, Linux, Windows or web versions of OpenAI apps, the company said, and only users of its MacOS versions need to take action.

The “root cause” of the security incident was a “misconfiguration in the GitHub Actions workflow” that has since been addressed, according to OpenAI.

Last month, reports emerged of the AI giant’s plans for consolidating its chatbot, coding and web browsing tools into a single ‘superapp’ for desktop in the face of fierce competition from Anthropic.

The following week, it decided to shut down its controversial AI video generator Sora and sideline plans for an ‘erotic’ version of ChatGPT to focus instead on its core enterprise business.

Don’t miss out on the knowledge you need to succeed. Sign up for the Daily Brief, Silicon Republic’s digest of need-to-know sci-tech news.