OpenAI recently shared that Mixpanel an analytics company they used for platform.openai.com had a security breach. On November 9, 2025, someone got into part of Mixpanel’s system and managed to export a dataset with some OpenAI API users’ info. But here’s the thing: OpenAI’s own systems stayed safe. No chat data, API keys, passwords, payment details, or government IDs leaked out. Once Mixpanel let them know, OpenAI kicked off their own investigation. By November 25, Mixpanel figured out exactly what was taken: names, email addresses, rough location info, browser and OS details, what websites sent users there, and some organization or user IDs. This only touched people using the API platform so if you use ChatGPT or other OpenAI apps, you weren’t affected. OpenAI quickly pulled Mixpanel out of their production setup, checked all the impacted datasets, and started telling organizations and users who got caught up in the breach. Now, OpenAI’s cut ties with Mixpanel for good and is tightening security checks with all their partners. So far, nobody’s seen any signs that the stolen data’s being misused. Still, OpenAI’s urging users to watch out for phishing or social engineering tricks, since names and emails were part of the leak. Just a reminder: OpenAI will never ask for your password, API key, or verification code by email or chat. If you haven’t already, turn on multi-factor authentication it’s an extra layer of safety.
Cybercriminals are intensifying their attacks on the telecommunications and media sector, targeting critical infrastructure with sophisticated methods. Recent security analysis rev...
Bloody Wolf, a long-running threat actor active since at least 2023, has expanded its activity across Central Asia, targeting organizations in Kyrgyzstan and Uzbekistan throughout ...
A widespread supply-chain attack has targeted the npm ecosystem, where several JavaScript packages were found distributing a sophisticated malware strain known as Shai-Hulud. The m...