OpenAI Sandbox Escape, Checkmarx npm Malware and Jade Sleet Attacks
Listen now
Stream the full 3:56 briefing here, and it keeps playing as you browse.
Prefer your own app?
In this briefing: 5 stories
Hacked dAily is the first AI-driven cybersecurity podcast, created by Cytadel Cyber and published daily. Each episode delivers concise, actionable intelligence for CISOs, security leaders and business decision-makers. Today’s stories:
- 01
North Korea-linked Jade Sleet breached an India-based IT provider through job-interview lures and weaponized Terraform files, compromising a DevOps engineer’s Mac with backdoors that enabled data theft, persistence and lateral movement. The campaign highlights growing risks to developer endpoints and software supply chains that can provide access to cloud environments, code and downstream customers.
- 02
An AI-generated intelligence report falsely claimed a Chinese vessel near the Middle East carried nuclear components, nearly prompting a US military interception. The incident shows how unchecked AI errors can distort high-stakes decisions and create serious geopolitical and operational risks.
- 03
A malicious npm campaign used a fake package to impersonate a popular library, evade install-script defenses and steal system data through Slack, Telegram and blockchain-based command-and-control. The discovery of related packages with millions of downloads reinforces the need for runtime monitoring, not just installation-time controls.
- 04
Researchers reportedly escaped the OpenAI Codex sandbox and executed commands on the underlying host, exposing a potential isolation weakness. For organizations deploying code-capable AI tools, sandbox security, monitoring and prompt-injection defenses are essential to prevent access to broader systems and sensitive data.
- 05
A public project appearing to involve OneDrive-related content could not be fully assessed because information about its purpose and functionality was limited. The case is a reminder to verify the provenance, permissions and contents of unfamiliar repositories before introducing third-party code or files into business environments.