OpenAI Codex Security Uncovers 10,561 High-Severity Issues in 1.2 Million Commits

TL;DR
OpenAI rolled out Codex Security in a research preview for ChatGPT Pro/Enterprise customers, offering AI-driven code security checks that analyze a project’s context, generate a threat model, validate vulnerabilities in a sandbox, and propose fixes. In beta, it scanned 1.2 million commits across external repos and found 792 critical and 10,561 high-severity issues, including flaws in OpenSSH, GnuTLS, GOGS, Thorium, libssh, PHP, and Chromium. OpenAI says the system reduces false positives through context grounding and automated validation, with free usage for the next month.
Topics:businesstechnology#ai-powered-security#codex-security#open-source-security#openai#technology#vulnerability-scanning
- OpenAI Codex Security Scanned 1.2 Million Commits and Found 10,561 High-Severity Issues The Hacker News
- Codex Security: now in research preview OpenAI
- How to scan for vulnerabilities with GitHub Security Lab’s open source AI-powered framework The GitHub Blog
- OpenAI unveils Codex Security to automate code security reviews Axios
- OpenAI Releases AI Agent Security Tool for Research Preview Bloomberg.com
Want the full story? Read the original reporting
Read on The Hacker News