Claude Code, Copilot and Codex all got hacked. Every attacker went for the credential, not the model.
On March 30, BeyondTrust demonstrated that a specially crafted GitHub branch name could steal Codex’s OAuth token in plaintext. OpenAI classified this as Critical P1. Shortly after, Anthropic’s Claude Code source code was leaked to the public npm registry, and …










