00:00It's Benzinga, bringing Wall Street to Main Street.
00:02OpenAI said it identified a security issue tied to the Axios developer library
00:06and is tightening verification for its macOS apps to prevent imposter software, according to Reuters.
00:12The company said it found no evidence of customer data access, internal breaches, or code-based changes.
00:17It said Axios was tampered with on March 31st in a supply chain campaign it believes is linked to North
00:22Korea actors.
00:23The attack involved a GitHub Actions workflow that ran a malicious Axios version
00:27that could access certificate and notarization materials used to sign macOS apps.
00:32OpenAI said signing certificates likely remained intact and API keys were not impacted.
00:36The company is requiring macOS users to update apps, with older builds losing support starting May 8th.
00:41For all things money, visit Benzinga.com.
Comments