OpenAI is rotating potentially exposed macOS code-signing certificates after a GitHub Actions workflow executed a malicious ...
A single unauthenticated connection gives attackers a full shell; credential theft observed in under three minutes on honeypot servers.