OpenAI experienced a supply chain attack that resulted in the exfiltration of some customer data, specifically affecting visitors to its API documentation. The breach was traced to a compromise of Mixpanel, a third-party analytics provider, which notified OpenAI of the incident after detecting the attack. OpenAI responded by discontinuing its use of Mixpanel and publicly acknowledged the breach, emphasizing that the damage was limited but still notable due to the nature of the supply chain vector.
In response to the growing threat landscape, including the risk of adversaries leveraging AI models for cyberattacks, OpenAI has expanded its 'defense in depth' security strategy. This includes the formation of the Frontier Risk Council, composed of experienced cyber defenders, to advise on safeguarding AI capabilities and preventing their misuse. Additional measures include enhanced guardrails, external red team testing, and a trusted access program for customers, all aimed at strengthening the security posture of OpenAI's AI ecosystem and mitigating risks from both supply chain attacks and malicious use of AI technologies.

See attribution, scope, and your downstream exposure.
5 events from the most recent confirmed update back to the earliest known activity.
OpenAI announced broader 'defense in depth' measures to reduce the risk of its models being used in cyberattacks, including a Frontier Risk Council, expanded guardrails, external red teaming, a trusted access program, and use of its Aardvark security research tool.
Following the supply-chain incident, OpenAI discontinued its use of Mixpanel as part of its response to the compromise.
OpenAI notified all potentially affected users of the developer portal breach and advised them to enable multifactor authentication. The company said general ChatGPT users and third-party app customers using OpenAI APIs were not affected.
OpenAI said some customer data was exfiltrated from its API documentation portal through compromised Mixpanel access. Exposed data included names, email addresses, approximate locations, browser and OS details, referring websites, and organization or user IDs, but not passwords or API keys.
A Mixpanel employee was targeted in a smishing attack that stole credentials, enabling a supply-chain compromise affecting OpenAI's API documentation portal.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See attribution, scope, and whether this vendor sits anywhere in your supply chain.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.