AI 导读
据 WSJ 报道,三名研究员利用 Claude Opus 5 将 Discourse 漏洞串联成攻击链,获得了 OpenAI 私有代码的访问权限。相关代码触达 Discourse 服务器后,研究人员拿到了认证令牌,其中包括 OpenAI 员工的令牌;部分论坛令牌可用于 ChatGPT,还能访问 OpenAI 的 GitHub 服务。
推荐理由
报道还原了论坛漏洞、身份令牌与代码仓库如何被串成一条攻击路径,呈现身份边界被穿透的过程。
正文
WSJ: Three researchers used Claude Opus 5 to chain a Discourse flaw into access to OpenAI’s private code.
That code reached the Discourse server and gave the researchers access to authentication tokens, including tokens belonging to OpenAI employees.
Some forum tokens worked on ChatGPT and could also reach OpenAI’s GitHub service, turning one identity boundary into another.
OpenAI said its review found only “limited reads” of private-repository metadata and code changes; no model weights were believed exposed.
来源:@rohanpaul_ai · x.com