OpenAI said a technical error caused some verified cybersecurity researchers to lose access to its Trusted Access for Cyber (TAC) program, which provides limited access to cyber-focused capabilities in ChatGPT. Affected users reported seeing messages that their identity could not be verified or that their accounts were ineligible when attempting to use ChatGPT’s Cyber page, and OpenAI described the issue as affecting a limited number of participants.
Researchers told TechCrunch that the access loss disrupted legitimate security work, and OpenAI reportedly instructed impacted users by email to reapply and complete verification again. Reporting also noted that the interviewed affected researchers were all based outside the United States and Europe, raising questions about whether the incident disproportionately impacted users in other regions amid broader criticism that AI providers’ access controls can impede bona fide cyber research.

Track how attackers are adapting to this technology.
3 events from the most recent confirmed update back to the earliest known activity.
OpenAI launched the Daybreak Blue tier of its Trusted Access for Cyber (TAC) program, giving verified cybersecurity researchers access to frontier models including GPT-5.6 Sol for defensive uses such as vulnerability discovery, malware analysis, and incident response.
OpenAI emailed affected researchers about a recent technical problem and instructed them to reapply and complete the verification process again to regain access. The company said the incident was an internal operational issue rather than a cyberattack.
A technical error on OpenAI's side suddenly revoked TAC access for a limited number of verified cybersecurity researchers. Affected users reported seeing messages that their identity could not be verified or that their account was ineligible when opening ChatGPT's Cyber page.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
Follow how adversaries are adapting to this technology, and where it touches your stack today.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.