Researchers managed to steal GitHub OAuth tokens by abusing a command injection vulnerability.
Command injection in Codex and a hidden outbound channel in ChatGPT exposed risks of credential theft and covert data ...
What happens when researchers think outside the box? Data gets exfiltrated through DNS.
ChatGPT and Codex flaws patched Feb 2026 exposed DNS exfiltration and GitHub tokens, raising enterprise AI security risks.