The lead
Three researchers used Claude Opus 5 to reach OpenAI employee accounts and the internal monorepo
The model version decided the result. Opus 4.8 failed across several sessions to produce a working exploit, and Opus 5 solved the same problem within hours of its release.
A three person team at security startup Hacktron chained two flaws, starting from OpenAI's public discussion forum, took over an employee account whose Codex was connected to OpenAI's GitHub organisation, and had a pull request opened in the internal monorepo. Less than 72 hours passed from the first entry point on 25 July to access, OpenAI fixed the flaw in about 14 hours and paid a 6,500 dollar bounty.
CONVOUse this as the concrete version of the AI risk argument in interviews and recruiter calls: three people, 72 hours, a 6,500 dollar payout, and a capability jump between two model versions doing the work.