In reply to @s1r1u5_

s1r1us

s1r1us

@s1r1u5_ · Twitter ·

At a high level, this was the full exploit chain. 1. HEIC/HEIF upload 2. ImageMagick decoding 3. Heap overflow on libheif 4. RCE on http://community.openai.com 5. Critical OpenAI SSO flaw 6. ChatGPT/Codex takeover 7. Connected GitHub access 8. Internal repo PR #1186742

Post media