OpenAI Rolls Out Codex Security Vulnerability Scanner
2026-03-10T13:24:04Z•af0a85da6f2864dd34aa1aa407c6d6a78c82aad112d214932e37d78a563e71a8
.arpa abuseAI securityArmadinCISA KEVClickFixCloudflareEscapeIvanti Endpoint ManagerM&AOpenAI Codex SecuritySIM swapSalesforce data theftWindows Terminalauthentication bypassautomated pentestingfundingidentity securityphishingred teamingvulnerability scanner
What happened
SecurityWeek roundup: OpenAI launched Codex Security (formerly Aardvark), an automated scanner that has reportedly found hundreds of critical vulnerabilities; Kevin Mandia-backed Armadin and other startups (Escape, Cylake) raised funding to expand AI red‑teaming and automated pentesting; hundreds of Salesforce customers are being targeted via poorly secured instances; a high‑severity Ivanti Endpoint Manager authentication‑bypass flaw is being actively exploited and was added to CISA’s KEV list; SIM‑swap attacks and abuse of the .arpa TLD for phishing (via Cloudflare DNS record manipulation) /a
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityweek
- Record identifier
- af0a85da6f2864dd34aa1aa407c6d6a78c82aad112d214932e37d78a563e71a8
- Enrichment time
- 2026-03-10T13:24:04Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.