Hacktron is an autonomous vulnerability hunter for ambitious engineering teams. Built by world-class security researchers. Powered by one principle: PoC || GTFO
Introducing Hacktron Review: an AI security reviewer for your pull requests.
It understands your whole codebase, builds a threat model, takes your feedback, and catches exploitable vulnerabilities before they reach production.
Try for free: app.hacktron.ai
𝗬𝗼𝘂 𝗻𝗼𝘄 𝗴𝗲𝘁 𝘁𝗼 𝘀𝗲𝗲 𝘄𝗵𝗮𝘁 𝗼𝘂𝗿 𝗮𝗴𝗲𝗻𝘁𝘀 𝗱𝗼 𝘄𝗶𝘁𝗵 𝗲𝘃𝗲𝗿𝘆 𝗽𝗼𝘁𝗲𝗻𝘁𝗶𝗮𝗹 𝗳𝗶𝗻𝗱𝗶𝗻𝗴
Our new Whitebox Pentest UI makes dynamic validation easier to follow. Watch our agents authenticate through the live browser preview, then see the actions they take to determine whether an issue can be reproduced against your running application and verify its impact.
Each validation returns a verdict with the relevant source references.
Less guesswork. More evidence.
Live now at app.hacktron.ai
𝗛𝗮𝗰𝗸𝘁𝗿𝗼𝗻 𝗶𝘀 𝗻𝗼𝘄 𝗦𝗢𝗖 𝟮 𝗧𝘆𝗽𝗲 𝗜𝗜 𝗰𝗼𝗺𝗽𝗹𝗶𝗮𝗻𝘁 🎉
This means greater assurance over how we protect data and operate our systems.
Next up: 𝗖𝘆𝗯𝗲𝗿 𝗧𝗿𝘂𝘀𝘁 𝗠𝗮𝗿𝗸, 𝗜𝗦𝗢 𝟮𝟳𝟬𝟬𝟭 𝗮𝗻𝗱 𝗖𝗥𝗘𝗦𝗧 as we continue strengthening the standards behind how we operate and deliver security services.
We Hacked OpenAI.
Here's what didn't fit in 90 seconds:
→ OpenAI was only one target. It was part of a bigger research project we call the HEIF Heist
→ 2 months, 3 researchers, under $3,000 in AI tokens
→ The bug we used had already been fixed upstream. It just never got a CVE, so it never got patched downstream
→ The older Claude model got stuck. Claude Opus 5 cracked it within hours of release
→ OpenAI paid us $6,500 for the finding :).
The scary part isn't OpenAI. They fixed it in 14 hours.
It's every other company running the same image software, still unpatched, with no CVE telling them to care.
Harsh, Mohan and Rahul wrote up everything.
Visit - Hacktron.ai/blog/hacking-ope…
A single malicious image led to demonstrated access to an internal OpenAI repository 👇
This is the exploit chain that took our researchers from a vulnerable libheif dependency in the OpenAI Community forum to internal repo access.
Full technical breakdown: hacktron.ai/blog/hacking-ope…
We collaborated with @HacktronAI to reproduce the libheif vulnerability in Next.js and responsibly disclose it to the maintainer.
Learn about the dependency chain and fix ↓
vercel.com/blog/reproducing-…
We are not stopping at OpenAI.
Today we’re publishing HEIF Heist, a months-long investigation by our security research team into vulnerabilities in libheif.
The research uncovered attack paths affecting OpenAI, Slack, Meta, GitHub Enterprise, Rails, Next.js, ImageMagick and others.
heif-heist.com
We’re disclosing HEIF Heist, a months-long investigation into libheif that allowed us to hack OpenAI, Slack, Meta, GitHub Ent, Rails, Next.js, ImageMagick, and many more.
It was literally xkcd #234, one obscure image library beneath a huge number of apps. 🧵
A bug-hunting independent security research team used Anthropic’s Claude software to gain access to an OpenAI employee’s ChatGPT account, giving them a way to read and suggest changes to the company’s private cache of software. on.wsj.com/4h8vaBP
How many companies can you hack through an image parser?
We spent the last few months finding out.
OpenAI was one.
So were Slack, Meta, GitHub Enterprise, Rails, Next.js, ImageMagick, and many more.
We called it HEIF Heist. 📷
We’re disclosing HEIF Heist, a months-long investigation into libheif that allowed us to hack OpenAI, Slack, Meta, GitHub Ent, Rails, Next.js, ImageMagick, and many more.
It was literally xkcd #234, one obscure image library beneath a huge number of apps. 🧵
A bug-hunting independent security research team used Anthropic’s Claude software to gain access to an OpenAI employee’s ChatGPT account, giving them a way to read and suggest changes to the company’s private cache of software. on.wsj.com/4h8vaBP