ax@ax-radar:~/curated $ grep -l 'curated=true' sources/
33 srcsignal 72%cycle 04:32

curated · 2026-09-18

9 items · updated 3m ago
2026-09-18 · Fri
04:45
4d ago
AI HOT (Curated Pool)· aihot-apiZH04:45 · 09·18
Hacktron chains libheif overflow and OpenAI SSO flaw to compromise employee accounts
On July 25, 2026, Hacktron chained two critical vulnerabilities to breach OpenAI's internal repos. They exploited a heap buffer overflow in the libheif image decoder to get RCE on community.openai.com, then abused an OpenAI SSO identity flaw to take over multiple employees' ChatGPT and Codex accounts. They opened a harmless PR in OpenAI's internal monorepo as proof. The entire chain took under 72 hours and earned a $6,500 bounty. The post does not spell out the SSO flaw's technical details.
#OpenAI#Hacktron#Discourse
editor take
Hacktron published a detailed write-up on chaining a libheif heap overflow with an OpenAI forum SSO flaw to take over employee ChatGPT accounts and access internal repos. Two outlets are covering i...
HKR breakdown
hook knowledge resonance
open source
49
SCORE
H0·K0·R0
00:00
5d ago
AI HOT (Curated Pool)· aihot-apiZH00:00 · 09·18
xAI launches Grok Voice Transcribe 2.0, doubling accuracy at the same price
xAI released Grok Voice Transcribe 2.0 on Sep 18, claiming it's one of the most accurate speech-to-text models in real-world evals and twice as accurate as v1.0. Pricing stays at $0.10/hr for batch and $0.20/hr for streaming, with diarization, timestamps, and key terms included. It handles hard cases like noisy phone calls and short multilingual commands—word error rate on short phrases dropped from 20.6% to 6.8%. Atlassian Loom already swapped it in and pipes transcripts into Cursor for code updates. The post doesn't disclose parameter count or training details.
#xAI#SpaceXAI#Grok
editor take
2x accuracy at same price, short-phrase WER dropped from 20.6% to 6.8%, but no param count or training details disclosed.
HKR breakdown
hook knowledge resonance
open source
72
SCORE
H1·K1·R0

more

feeds

admin