OpenAI Codex Authentication Tokens Stolen in codexui-android npm Supply Chain Attack
EXPIRED
54.8
2026-06-02T07:00
Score-Aufschlüsselung
100
novelty
25
reach
35
concrete_impact
60
emotional_hook
70
source_quality
50
platform_fit
Zusammenfassung
Cybersecurity researchers have disclosed details of a new malicious supply chain campaign that's targeting developers using OpenAI Codex through a legitimate-looking remote web UI. The tool, named codexui-android, is advertised on GitHub and npm as a remote web UI for OpenAI Codex, attracting over 29,000 weekly downloads. The package is still available for download from the repository. What
Skripte (0)
81582336…
Noch kein Skript generiert.
Score 54.8 — unter Schwellwert (65)