National Cyber Warfare Foundation (NCWF)

27,000-Download Codex UI Tool Secretly Stole OpenAI Refresh Tokens


0 user ratings
2026-05-31 14:55:39
milo
Developers
A malicious Codex UI npm package with 27,000 weekly downloads was caught exfiltrating OpenAI refresh tokens, exposing developers to account takeover risks.

Deeba Ahmed

Source: HackRead
Source Link: https://hackread.com/codex-ui-tool-secretly-stole-openai-refresh-tokens/


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Developers



Copyright 2012 through 2026 - National Cyber Warfare Foundation - All rights reserved worldwide.