National Cyber Warfare Foundation (NCWF)

OpenAI Codex Authentication Tokens Stolen in codexui-android npm Supply Chain Attack


0 user ratings
2026-06-01 11:12:30
milo
Blue Team (CND)
Cybersecurity researchers have disclosed details of a new malicious supply chain campaign that's targeting developers using OpenAI Codex through a legitimate-looking remote web UI.

The tool, named codexui-android, is advertised on GitHub and npm as a remote web UI for OpenAI Codex, attracting over 29,000 weekly downloads. The package is still available for download from the repository.

What



Source: TheHackerNews
Source Link: https://thehackernews.com/2026/06/openai-codex-authentication-tokens.html


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Blue Team (CND)



Copyright 2012 through 2026 - National Cyber Warfare Foundation - All rights reserved worldwide.