Decrypt's Art, Fashion, And Entertainment Hub
Angela McSharry heeft deze pagina aangepast 5 maanden geleden


A hacker said they purloined private details from countless OpenAI accounts-but scientists are doubtful, and the business is examining.

OpenAI states it's investigating after a hacker claimed to have actually swiped login credentials for 20 countless the AI firm's user put them up for sale on a dark web forum.

The pseudonymous breacher posted a puzzling message in Russian marketing "more than 20 million gain access to codes to OpenAI accounts," calling it "a goldmine" and providing possible purchasers what they claimed was sample data containing email addresses and passwords. As reported by Gbhackers, the complete dataset was being offered for sale "for simply a few dollars."

"I have over 20 million gain access to codes for OpenAI accounts," emirking composed Thursday, according to an equated screenshot. "If you're interested, reach out-this is a goldmine, and Jesus agrees."

If legitimate, this would be the 3rd major security occurrence for the AI business given that the release of ChatGPT to the general public. In 2015, a hacker got access to the company's internal Slack messaging system. According to The New York Times, the hacker "took details about the style of the company's A.I. technologies."

Before that, in 2023 an even simpler bug involving jailbreaking triggers allowed hackers to obtain the private information of OpenAI's paying clients.

This time, however, security scientists aren't even sure a hack happened. Daily Dot reporter Mikael Thalan wrote on X that he found invalid email addresses in the expected sample information: "No proof (suggests) this alleged OpenAI breach is genuine. At least 2 addresses were invalid. The user's just other post on the forum is for a stealer log. Thread has actually because been erased too."

No evidence this supposed OpenAI breach is legitimate.

Contacted every email address from the supposed sample of login credentials.

At least 2 addresses were void. The user's just other post on the forum is for a thief log. Thread has because been erased also. https://t.co/yKpmxKQhsP

- Mikael Thalen (@MikaelThalen) February 6, 2025

OpenAI takes it 'seriously'

In a statement shared with Decrypt, an OpenAI spokesperson acknowledged the circumstance while maintaining that the business's systems appeared secure.

"We take these claims seriously," the representative said, including: "We have actually not seen any evidence that this is connected to a compromise of OpenAI systems to date."

The scope of the alleged breach triggered concerns due to OpenAI's massive user base. Millions of users worldwide count on the company's tools like ChatGPT for service operations, instructional purposes, and material generation. A genuine breach might expose private discussions, industrial tasks, and other sensitive information.

Until there's a final report, some preventive steps are constantly a good idea:

- Go to the "Configurations" tab, log out from all connected gadgets, and enable two-factor authentication or 2FA. This makes it virtually impossible for a hacker to gain access to the account, wiki.dulovic.tech even if the login and passwords are jeopardized.