<img height="1" width="1" style="display:none;" alt="" src="https://px.ads.linkedin.com/collect/?pid=10643465&amp;fmt=gif">

Hackers Are Using Fake OpenAI Organizations to Silently Steal Your Work Data

Hackers exploit OpenAI's notification system to lure employees into fake organizations, accessing sensitive data without detection.
Content Team

Security researchers at Push Security have uncovered a "poisoned tenant" attack where hackers create fake OpenAI organizations — impersonating real companies — and send employees legitimate-looking invitations straight from OpenAI's own notification system, noreply@tm.openai.com. One click joins the victim to an attacker-controlled tenant with zero additional verification.

Once inside, anything the employee does — prompts, uploaded files, API calls — is visible to the attacker. The fake orgs go to some lengths to look real: executive impersonation, Owner-level privileges for everyone, even a credit card attached to avoid friction on paid features. Push found the technique when it saw itself impersonated, and the invites observed so far have targeted cybersecurity and tech firms.

No spoofed domains, no malicious links. Just a trusted platform being weaponized against its own users. The one visible tell is a small domain mismatch warning on the invite. Beyond that, defences are organizational: restrict who can join external tenants, enforce domain verification, and get visibility into which SaaS orgs staff are actually joining.

Source: Cybersecurity News

Share this article
Share on facebook Share on linkedin Share on twitter Share on email
blog_book_a_demo_cta_3x
Have questions about protecting your software?
Our escrow experts are standing by to help.
Book a free demo