BreachFeed
company

Hacktron

Tracked by 0 people

Track Hacktron

Vendors & providers

Third parties Hacktron reportedly relies on, identified from incident coverage.

Incident history

The Hacker News·7 sources
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmu8b2hia1clwhmu2a2rzqluf

Claude Opus 5 Helped Researchers Take Over OpenAI Staff Accounts via Chained Flaws

Three researchers at the security firm Hacktron used Anthropic's Claude Opus 5 to chain two flaws and take over the ChatGPT and Codex accounts of several OpenAI employees, then reach an internal OpenAI code repository. The chain began with a bug in the software that runs OpenAI's public help forum and moved through a weakness in OpenAI's own login system. This was security research,

The Hacker News·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmu3q8to97jrvhpu2mefyzrm8

Active Exploitation Attempts Target WSO2 API Manager JWT Bypass With Forged Admin Tokens

A critical security flaw in WSO2 API Manager has come under active exploitation in the wild, according to findings from watchTowr. The vulnerability, tracked as CVE-2026-5430 (CVSS score: 9.8/10.0), is a case of improper verification of a cryptographic signature that could result in account takeover. Hacktron Team has been credited with discovering and reporting the flaw. "JWT authentication