OpenAI urgently requires all MacOS users to update their applications; an Axios supply chain attack has triggered a security credential update

ChainNewsAbmedia

OpenAI issued a security notice on April 11, stating that it recently discovered a security issue involving the third-party development library Axios. OpenAI emphasized that there is no evidence showing that user data was accessed, systems were compromised, or software was tampered with. However, based on a precautionary approach, it is updating the security credentials of all macOS applications, requiring all macOS users to update to the latest version.

Impact of the Axios supply chain incident

This security issue stems from a supply chain attack involving Axios — a widely used JavaScript HTTP request library. This is not an issue unique to OpenAI, but an event affecting the entire industry. Previously, Anthropic’s Claude Code was also impacted by related supply chain risks during the same period.

OpenAI said it is updating security credentials to prevent anyone from trying to distribute counterfeit software disguised as an official OpenAI application. While this kind of risk is “extremely unlikely” to occur, the company has chosen to take preventative measures.

macOS applications affected

The macOS applications that need to be updated include:

ChatGPT Desktop

Codex App

Codex CLI

Atlas

Users can update via the built-in update feature within the app or by going to OpenAI’s official link to download the latest version. OpenAI recommends that all macOS users complete the update as soon as possible.

Supply chain security for AI tools is drawing increasing attention

The incident once again highlights the supply chain security risks that AI tools face. As AI programming tools (such as ChatGPT, Claude Code, and Codex) have become central to developers’ everyday workflows, the third-party libraries these tools rely on also become targets for attackers.

Just the day before, security researchers had revealed a research report on 26 LLM router models secretly injecting malicious instructions, and the U.S. Department of the Treasury also expanded finance-grade cybersecurity intelligence to the digital asset industry. The security of AI tools is becoming a top priority for the entire industry.

This article, OpenAI urgently requests that all macOS users update their applications; the Axios supply chain attack triggers security credential updates, first appeared on LianNews ABMedia.

Disclaimer: The information on this page may come from third parties and does not represent the views or opinions of Gate. The content displayed on this page is for reference only and does not constitute any financial, investment, or legal advice. Gate does not guarantee the accuracy or completeness of the information and shall not be liable for any losses arising from the use of this information. Virtual asset investments carry high risks and are subject to significant price volatility. You may lose all of your invested principal. Please fully understand the relevant risks and make prudent decisions based on your own financial situation and risk tolerance. For details, please refer to Disclaimer.

Related Articles

Silicon Valley’s ‘monitoring the situation’ MTS meme becomes a 24/7 news machine delivered by a16z

a16z is backing "Monitoring the Situation," a 24/7 X livestream born from Polymarket meme culture, as tech VCs build their own news-industrial complex. Summary Andreessen Horowitz has helped launch "Monitoring the Situation" (MTS), a 24/7 livestream show on X, leaning into crypto-prediction mar

Cryptonews3h ago

Google launches Deep Research Max: supports MCP and can access enterprise private data

According to a Google DeepMind official blog announcement, Google launched a new generation of autonomous research agents, Deep Research and Deep Research Max, on April 21, 2026. They are built on Gemini 3.1 Pro, as the official release following the preview version provided through the Interactions API in December 2025. Both agents are now available in the paid tiers of the Gemini API in the form of a public preview, and new startups and enterprise users on Google Cloud will be able to connect gradually. The two variants are positioned differently: interactive vs asynchronous depth Google categorizes the two agents by use case: Deep Research

ChainNewsAbmedia4h ago

OpenAI Codex Monthly Active Users Reach 4 Million in Under Two Weeks

OpenAI Codex hit 4 million MAUs, announced by Sottiaux and Altman; the jump came in under two weeks from 3 million, and rate limits were reset across all tiers to celebrate. OpenAI Codex reached 4 million monthly active users in under two weeks since reaching 3 million, according to statements by OpenAI executives. To mark the milestone, rate limits across all tiers were reset.

GateNews6h ago

Two South African AI Startups Selected for Google for Startups Accelerator Africa Class 10

Two SA startups, Loop and Vambo AI, join Google's Accelerator Africa 10th cohort from 2,600 apps; Loop enhances mobility/payments, Vambo AI enables multilingual AI; program runs Apr-Jun 2026 with mentors and AI workshops. Abstract: Two South African startups, Loop and Vambo AI, have been selected for the Google for Startups Accelerator Africa's 10th cohort, chosen from about 2,600 applications and one of 15 African participants. Loop digitizes mobility and payments, while Vambo AI provides multilingual AI infrastructure for translation, speech, and generative AI across African languages. The 2026 program runs April 13–June 19 and offers mentorship and hands-on workshops focused on AI/ML. Since 2018, the accelerator has supported 106 startups from 17 African countries, helping them raise over $263 million and create more than 2,800 jobs.

GateNews8h ago

Forbes AI 50 List Features 20 New Companies; OpenAI and Anthropic Capture 80% of Total Funding

Gate News message, April 21 — Forbes released its 2026 eighth edition AI 50 list, featuring 20 newly included companies. OpenAI and Anthropic continue to lead the rankings, attracting substantial capital from top Silicon Valley venture capitalists and major tech firms. The combined funding for all l

GateNews8h ago

Zi变量 Unveils WALL-B Embodied AI Model; Robots to Enter Real Homes in 35 Days

Gate News message, April 21 — Zibianliang (自变量), a Chinese robotics company, held a press conference on April 21 to unveil its next-generation embodied AI foundation model, WALL-B. The company announced that robots powered by WALL-B will enter real households in 35 days. According to Zibianliang co

GateNews9h ago
Comment
0/400
No comments