HomeFeaturedDownloadsOpenAI Codex device with over 29,000 downloads linked to malicious npm provide...

OpenAI Codex device with over 29,000 downloads linked to malicious npm provide chain assault stealing authentication tokens

- Advertisement -

  • Researchers uncovered a malicious npm bundle posing as a Codex UI device
  • Attackers exfiltrated Codex authentication tokens, together with non‑expiring refresh tokens
  • Aikido Safety additionally discovered two Android apps concentrating on Codex customers

A newly found supply-chain assault on npm is concentrating on software program builders utilizing OpenAI Codex.

Codex is OpenAI’s coding assistant and software program engineering agent that may write and overview code, repair bugs, run checks, and assist builders construct software program with nothing however plain language enter.

- Advertisement -
Admin
Adminhttps://nirmalnews.com
Nirmal News - Connecting You to the World
- Advertisement -
Stay Connected
16,985FansLike
36,582FollowersFollow
2,458FollowersFollow
61,453SubscribersSubscribe
Must Read
- Advertisement -
Related News
- Advertisement -

LEAVE A REPLY

Please enter your comment!
Please enter your name here