WSJ:三人利用Claude Opus 5漏洞获取OpenAI代码
WSJ: Three researchers used Claude Opus 5 to chain a Discourse flaw into access…
推荐理由
涉及顶级AI公司核心资产安全与前沿模型能力边界,值得安全与产品团队关注。
WSJ: Three researchers used Claude Opus 5 to chain a Discourse flaw into access to OpenAI’s private code.
That code reached the Discourse server and gave the researchers access to authentication tokens, including tokens belonging to OpenAI employees.
Some forum tokens worked on ChatGPT and could also reach OpenAI’s GitHub service, turning one identity boundary into another.
OpenAI said its review found only “limited reads” of private-repository metadata and code changes; no model weights were believed exposed.
更进一步:量化金融体系
看懂新闻只是起点——沿量化金融路径,把它变成能交付的工程能力