OpenAI warns macOS users of fake OpenAI apps after Axios supply-chain breach

1 min read
Source: Axios
OpenAI warns macOS users of fake OpenAI apps after Axios supply-chain breach
Photo: Axios
TL;DR

OpenAI says a March 31 malicious Axios library update, delivered after a hijacked developer account, infected its Mac app signing workflow and could let attackers ship fake OpenAI apps with valid certificates; no evidence of user data or internal systems being compromised. To mitigate risk, OpenAI will discontinue older macOS app versions on May 8, with a 30-day window for users to update before certificates are revoked.

Share this article

Want the full story? Read the original reporting

Read on Axios