A thief allegedly snared login information for 20 million of the AI agency’s user accounts and posted them for sale on a dark online community, according to OpenAI.
The anonymous breacher advertised “more than 20 million access code to OpenAI accounts” in Russian, calling it” a treasure” and offering potential buyers what they claimed were trial data containing internet addresses and passwords in a mysterious message that read “more than 20 million entry codes to OpenAI accounts.” As reported by Gbhackers, the whole database was being offered for sale” for just a few money”.
” I have over 20 million access code for OpenAI addresses”, emirking wrote Thursday, according to a translated picture. ” If you’re serious, approach out—this is a treasure, and Jesus agrees”.
If true, this would be the Artificial company’s second significant security lapse since the launch of ChatGPT to the general public. Last month, a thief got access to the bank’s internal Slack communication system. According to The New York Times, the thief” stole information about the design of the bank’s A. I. technology”.
Before that, hackers could access the personal information of OpenAI’s paying customers in 2023 thanks to a much simpler insect involving booting prompts.
This time, however, safety researchers aren’t yet sure a hack occurred. No evidence ( suggests ) this alleged OpenAI breach is legitimate, according to reporter Mikael Thalan, who wrote on X. At least two names were invalid. A stealer register is the user’s even another forum post. Since then, Thread has also been deleted.
No proof this alleged OpenAI violation is reasonable.
contacted each email address using the allegedly specimen of username credentials.
At least 2 lists were invalid. A stealer register is the user’s even another forum post. Since then, the string has also been discarded. https ://t.co/yKpmxKQhs P
— Mikael Thalen ( @MikaelThalen ) February 6, 2025
OpenAI takes it” significantly”
An OpenAI spokeswoman acknowledged the position in a statement shared with while maintaining that the company’s techniques appeared safe.
” We take these claims seriously”, the spokesperson said, adding:” We have not seen any evidence that this is connected to a compromise of OpenAI methods to time”.
According to OpenAI’s large user base, the range of the reported breach raised questions. Millions of users worldwide rely on the company’s equipment like ChatGPT for business activities, educational purposes, and material creation. A legitimate breach could expose private conversations, commercial projects, and other sensitive data.
Until there’s a final report, some preventive measures are always advisable:
- Go to the” Configurations” tab, log out from all connected devices, and enable two-factor authentication or 2FA. Even if the login and passwords are compromised, a hacker is essentially unable to access the account because of this.
- If your bank supports it, then create a virtual card number to manage OpenAI subscriptions. This way, it is easier to spot and prevent fraud.
- Always keep an eye on the conversations stored in the chatbot’s memory, and be aware of any phishing attempts. Any payment updates are always handled through the official OpenAI.com link, and OpenAI does not request any personal information.
Generally Intelligent Newsletter
A generative AI model’s generative AI model, Gen, tells a weekly AI journey.