Breach404
Back to Insights
Secure Software2 min readJune 1, 2026

OpenAI Codex Authentication Tokens Stolen in codexui-android npm Supply Chain Attack

A malicious npm package named codexui-android was used to steal OpenAI Codex authentication tokens from developers who installed it, representing a serious supply chain attack on a widely-used development tool. You should immediately audit your npm depend

Could your website be vulnerable to attacks like this?

Run a free 10-point security scan on your site — headers, SSL, DNS, and more. Results in 15 seconds.

Test Your Site Now — It's Free