Tech Wavo
  • Home
  • Technology
  • Computers
  • Gadgets
  • Mobile
  • Apps
  • News
  • Financial
  • Stock
Tech Wavo
No Result
View All Result

Microsoft warns a key OpenAI API is being exploited to launch cyberattacks

Tech Wavo by Tech Wavo
November 5, 2025
in Computers
0



  • SesameOp malware uses OpenAI’s Assistants API as a covert command-and-control channel
  • It enables persistent access, runs commands, and exfiltrates data via encrypted API traffic
  • Microsoft urges firewall audits, tamper protection, and endpoint detection to mitigate threats

To be able to operate properly, malware needs a way to communicate with its “headquarters” – the command & control (C2) server – which is one of the usual ways cybersecurity researchers identify malware – by looking at suspicious communications – which is why crooks go to lengths to try and hide these “conversations” in plain sight.

Recently, security researchers from Microsoft discovered a new piece of malware that uses a creative way of hiding this dialogue, abusing OpenAI’s Assistants API, a programming interface that lets developers integrate OpenAI’s AI “assistant” capabilities into their own applications, products, or services.

“Instead of relying on more traditional methods, the threat actor behind this backdoor abuses OpenAI as a C2 channel as a way to stealthily communicate and orchestrate malicious activities within the compromised environment,” the Microsoft Incident Response team said in the report. “To do this, a component of the backdoor uses the OpenAI Assistants API as a storage or relay mechanism to fetch commands, which the malware then runs.”


You may like

Used for espionage

The malware is named SesameOp, and was discovered in July 2025. It grants its attackers persistent access to the compromised environment, as well as usual backdoor capabilities. All of the information grabbed in the attacks is then encrypted and shipped back through the same API channel.

It is also worth emphasizing this is not a vulnerability in OpenAI’s platform, but rather a built-in capability of the Assistants API which is being abused. According to BleepingComputer, the API itself is scheduled for deprecation in August 2026 anyway.

“The stealthy nature of SesameOp is consistent with the objective of the attack, which was determined to be long term-persistence for espionage-type purposes,” Microsoft added.

Those worried about potential SesameOp malware attacks should audit their firewall logs, enable tamper protection, and configure endpoint detection in block mode. Furthermore, they should also monitor for unauthorized connections to external services.

Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!

Via BleepingComputer


Best antivirus software header

The best antivirus for all budgets

Our top picks, based on real-world testing and comparisons

Follow TechRadar on Google News and add us as a preferred source to get our expert news, reviews, and opinion in your feeds. Make sure to click the Follow button!

And of course you can also follow TechRadar on TikTok for news, reviews, unboxings in video form, and get regular updates from us on WhatsApp too.

Previous Post

AMD confirms some Zen 5 CPUs have a worrying security flaw that could put users at risk

Next Post

Goldman Sachs doubles down on MoEngage in new round to fuel global expansion

Next Post
Goldman Sachs doubles down on MoEngage in new round to fuel global expansion

Goldman Sachs doubles down on MoEngage in new round to fuel global expansion

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Samsung just revealed its Dolby Vision 2 HDR rival for TVs – and it beats Dolby by having a streaming giant on board from the start

by Tech Wavo
November 5, 2025
0
Samsung just revealed its Dolby Vision 2 HDR rival for TVs – and it beats Dolby by having a streaming giant on board from the start
Computers

Samsung reveals HDR10+ Adaptive next-gen HDR, coming in 2026It shares many similarities with Dolby Vision 2's new featuresAmazon Prime Video...

Read more

Goldman Sachs doubles down on MoEngage in new round to fuel global expansion

by Tech Wavo
November 5, 2025
0
Goldman Sachs doubles down on MoEngage in new round to fuel global expansion
Computers

MoEngage, a customer engagement platform that works with consumer brands across 75 countries, says it has raised new funding led...

Read more

Microsoft warns a key OpenAI API is being exploited to launch cyberattacks

by Tech Wavo
November 5, 2025
0
“Our goal is simple” – OpenAI tells us how enterprise adoption can help take it to the next level, so get ready for a lot more ChatGPT at work
Computers

SesameOp malware uses OpenAI’s Assistants API as a covert command-and-control channelIt enables persistent access, runs commands, and exfiltrates data via...

Read more

AMD confirms some Zen 5 CPUs have a worrying security flaw that could put users at risk

by Tech Wavo
November 5, 2025
0
AMD confirms some Zen 5 CPUs have a worrying security flaw that could put users at risk
Computers

AMD Zen 5 chips have a flaw in RDSEED which risks cryptographic key integrityFaulty RDSEED may return zeroes, enabling attackers...

Read more

Site links

  • Home
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms of use
  • Home
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms of use

No Result
View All Result
  • Home
  • Technology
  • Computers
  • Gadgets
  • Mobile
  • Apps
  • News
  • Financial
  • Stock