Skip to content
Breach Spot
  • The Breach News
  • Check your exposure
REPORT BREACH
Breach SpotBreach Spot
  • The Breach News
  • Check your exposure
REPORT BREACH
Breach SpotBreach Spot

OpenAI Launches Enhanced Security Mode for Vulnerable Accounts

  • adminadmin
  • May 1, 2026
  • cyber-attacks

In a proactive move to fortify user accounts against potential cyber threats, OpenAI has introduced a new feature called Advanced Account Security. Announced on Thursday, this enhancement aims to provide an additional layer of protection for users of ChatGPT and Codex, significantly complicating the likelihood of account takeover incidents.

The initiative aligns with ongoing trends in cybersecurity where enhanced protective measures are becoming critical. Similar strategies have long been utilized by technology giants like Google through their Advanced Protection program. As artificial intelligence technologies gain ubiquitous adoption, the demand for robust security protocols is increasingly urgent. OpenAI asserts that this implementation forms part of a comprehensive cybersecurity strategy it revealed earlier this month.

As OpenAI notes, “People are turning to AI for deeply personal questions and increasingly high-stakes work.” The concern deepens for specific user groups—such as journalists, political figures, researchers, and those with heightened security needs—who may face larger implications should their accounts be compromised.

Users opting for Advanced Account Security will be required to forgo traditional passwords for their accounts. Instead, they must set up two physical security keys or passkeys, effectively minimizing vulnerability to phishing attacks. Notably, the option for recovery through email or SMS has been removed; users are instead required to utilize recovery keys, backup passkeys, or physical security tokens. In a bid to facilitate adoption, OpenAI has partnered with Yubico to offer budget-friendly YubiKey bundles to users opting for this security level.

Courtesy of OpenAI

A critical aspect of the Advanced Account Security feature is that once activated, users will no longer have access to OpenAI support for account recovery. This design ensures that support cannot be manipulated through social engineering, thereby reducing the potential entry points attackers could exploit. Such measures highlight the need for organizations to implement stronger verification practices in the face of persistent and evolving cyber threats.

Furthermore, Advanced Account Security introduces shorter sign-in sessions, necessitating users to log in more frequently. Each time a login occurs, users will receive notifications, enabling them to monitor active sessions on their accounts. For users already concerned about data privacy, opting out of having their conversations utilized for model training is automatically set for those who enable this enhanced security feature.

OpenAI’s Trusted Access for Cyber program, which provides cybersecurity experts and researchers early access to new technological models, will mandate the activation of Advanced Account Security by June 1. Alternatively, participants can attest to employing phishing-resistant authentication via enterprise-specific single sign-on solutions.

Source

Help Prevent Exploitation, Report Breaches

Help to prevent further data unauthorized access or potential exploitation. Protect others by sharing vital breach information. If you’ve discovered a new data breach

REPORT HERE
Trending now

"Fortinet" AI Android Apple artificial intelligence Artificial Intelligence & Machine Learning AT&T AWS CISA Cisco Cloudflare cloud security compliance CrowdStrike cryptocurrency Cybercrime cybersecurity data breach data breaches data privacy data security encryption ESET Facebook FBI Fraud Management GitHub Google healthcare HIPAA Kaspersky machine learning Malware Mandiant Meta Microsoft Multi-Factor Authentication OpenAI Palo Alto Networks phishing ransomware Salesforce Telegram Trend Micro Windows

Sector alert bulletin

Subscribe to your sector-specific insight newsletter to stay updated on potential data breaches and ongoing cyber-attacks targeting your industry

Stay informed and prepared against emerging security threats.

SUSCRIBE NOW

Related Posts

A Major Linux Threat Emerges, Taking the World by Surprise

  • April 30, 2026

Revealed Data Highlights the Harrowing Reality for Stalkerware Victims

  • April 30, 2026

Surge in Brute-Force Attacks on Fortinet SSL VPNs Precedes Focus on FortiManager

August 12, 2025
Threat Intelligence / Enterprise Security

Cybersecurity experts are reporting a significant increase in brute-force traffic directed at Fortinet SSL VPN devices. A coordinated effort, noted by threat intelligence firm GreyNoise, was detected on August 3, 2025, involving over 780 unique IP addresses participating in the attack. In the last 24 hours alone, 56 unique malicious IP addresses have been identified, originating from countries including the United States, Canada, Russia, and the Netherlands.

Targets of this brute-force activity span across the United States, Hong Kong, Brazil, Spain, and Japan. GreyNoise emphasized that the attacks were specifically aimed at their FortiOS profile, indicating a deliberate targeting strategy rather than opportunistic behavior. The firm also reported observing two distinct waves of assaults before and after August 5, with one being a prolonged brute-force attack.

  • April 29, 2026

Why a Recent Supply Chain Attack Targeted Security Companies Checkmarx and Bitwarden

  • April 29, 2026

Real-time data breach monitoring by scanning public databases, criminal forums, and online markets to detect exposed credentials and sensitive data.

Industries
  • Enterprise Security Teams
  • Financial Services
  • Retail and E-commerce
  • Legal Services
  • Law Enforcement
Commonly Used For
  • Penetration Testing
  • M&A Risk Research
  • Vulnerability Assessment
  • Red Team Operation
  • Enterprise Security
Contact Us

Need help or have a question?

Email: info@breachspot.com
Phone: +1 (914) 2943243

Copyright © 2026 - Breachspot, Security Breaches Spotted