Security
OpenAI Codex vulnerability enabled GitHub token theft via command injection, report finds
A critical vulnerability in OpenAI Group PBC’s Codex coding agent could have exposed sensitive GitHub authentication tokens through a command injection flaw, according to a new report out today from Phantom Labs, the research arm of identity…