powering productive workplaces
Front page
NewsTrust & Risk43m · 09:01 BST · 3 min read

A Week in Cyber: RSA Rocked, AI Attacks, AISI Denied Access

New research exposes a previously unknown weakness in some older RSA systems, while an AI-assisted OpenAI security test and reported limits on UK model access show how rapidly cybersecurity, frontier AI and government oversight are becoming intertwined

Cyber Roundup: RSA Rocked, AI Attacks, AISI Denied Access

It's been a busy week, with some big developments in the cybersecurity sphere. One that caught our attention is how assumptions around encryption are being challenged, and quantum isn't the culprit. RSA research raised fresh concerns over legacy cryptographic assumptions after researchers demonstrated that they could create valid digital signatures using an old 1024-bit RSA key without stealing or factoring the key itself.

Speaking of cyber breaches, researchers from Hacktron AI reportedly used Anthropic's Claude while chaining flaws involving OpenAI's third-party Discourse-hosted forum to gain access to an employee's ChatGPT account.

And if that wasn't enough to raise questions about where AI is heading, reports suggest OpenAI and Anthropic could delay sharing some new models with the UK AI Security Institute pending US review. The reports remain unconfirmed. If borne out, the move would put renewed focus on how and when independent national bodies can evaluate frontier models.

RSA Forgery Result Wobbles Trust in Encryption

A paper published on September 22 by researchers at UC San Diego and INRIA demonstrated a method for forging signatures against 1024-bit RSA without factoring the private key. The preprint reports that the researchers carried out the attack in 1,380 CPU core-years over five calendar months, making 232 oracle queries.

The research is notable because it presents a new way to break RSA signatures without factoring the key. The attack is practical against deprecated 1024-bit keys under the conditions examined, but the researchers said widely used RSA implementations remain safe. The researchers' central warning concerns the practical security of RSA where raw signing interfaces or equivalent oracle behavior are exposed.

That should still prompt a careful review. The authors estimate that, in their attack model, RSA parameters from 1024 to 4096 bits may offer 15 to 30 fewer bits of concrete security than factoring-based estimates suggest, and argue that this strengthens the case for moving away from RSA during the post-quantum transition. Organizations should identify legacy RSA uses and understand whether exposed APIs, hardware security modules, or blind-signature workflows create the conditions the research examines.

Claude-Assisted Hacked OpenAI in Test

Researchers from Hacktron AI reportedly used Anthropic's Claude during an authorized OpenAI bug-bounty exercise that led to access to OpenAI employees' ChatGPT and Codex accounts. According to the report, the researchers exploited a flaw in OpenAI's third-party Discourse-hosted community forum, then chained it with an OpenAI sign-on flaw to reach employee accounts and, through a connected Codex account, an internal GitHub repository.

OpenAI said it thanked the researchers for reporting the issue and had fixed the vulnerabilities. The researchers said they demonstrated the access by having an employee's Codex account open a harmless pull request in OpenAI's internal repository, rather than accessing or extracting internal code.

The disclosure came as Anthropic's own September threat-intelligence report describes disrupted operations in which actors attempted to use Claude across cyber workflows, including reconnaissance, exploitation, and data exfiltration.

UK Model-Testing Access Remains a Developing Issue

Reports have suggested that the White House asked OpenAI and Anthropic not to provide newly released models to the UK AI Security Institute until US authorities had reviewed them.

The reported restrictions would matter because pre-release access is central to independent evaluation of frontier-model risks. The AISI's cyber research, for example, relies on access to advanced systems and is intended to help government and businesses understand what models can and cannot do under controlled conditions.

If confirmed, this could be the second blow for the AI testing institute in the space of a month, as the AISI was not granted access to Anthropic's Mythos 5.1 model for pre-release testing. The issue is therefore less about a single reported delay than the principle it exposes. Limiting access for credible evaluators could also make it harder for international partners to build a shared evidence base around risks that do not stop at national borders.

In Other News 

rate this story
helps rank stories across uc today
The discussion0 takes · attributed & checked

Does this reflect your experience?

opening the room…
Read nextordered by techtelligence · every pick explained
picked for this story

Why AI Agents Need an Incident Plan, Not Just Guardrails

4 Sept 2026
picked for this storyAI to Outpace Cybersecurity Systems in "Months": How Can CISOs Prepare?3 Aug 2026picked for this storyGoogle Previews Gemini 3.5 Flash Cyber: Will its Lower Cost Accelerate Enterprise AI Cybersecurity?27 Jul 2026