OpenAI Rolls Out Codex Security Vulnerability Scanner

2026-03-10T13:24:04Zaf0a85da6f2864dd34aa1aa407c6d6a78c82aad112d214932e37d78a563e71a8
.arpa abuseAI securityArmadinCISA KEVClickFixCloudflareEscapeIvanti Endpoint ManagerM&AOpenAI Codex SecuritySIM swapSalesforce data theftWindows Terminalauthentication bypassautomated pentestingfundingidentity securityphishingred teamingvulnerability scanner

What happened

SecurityWeek roundup: OpenAI launched Codex Security (formerly Aardvark), an automated scanner that has reportedly found hundreds of critical vulnerabilities; Kevin Mandia-backed Armadin and other startups (Escape, Cylake) raised funding to expand AI red‑teaming and automated pentesting; hundreds of Salesforce customers are being targeted via poorly secured instances; a high‑severity Ivanti Endpoint Manager authentication‑bypass flaw is being actively exploited and was added to CISA’s KEV list; SIM‑swap attacks and abuse of the .arpa TLD for phishing (via Cloudflare DNS record manipulation) /a

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityweek
Record identifier
af0a85da6f2864dd34aa1aa407c6d6a78c82aad112d214932e37d78a563e71a8
Enrichment time
2026-03-10T13:24:04Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.