OpenAI has asked all macOS users to update their apps after a security issue involving Axios, a popular tool used by developers. The problem was discovered on March 31, 2026, and was part widely reported, broader industry incident.
OpenAI confirmed that no user data was stolen and its systems were not damaged. The issue affects OpenAI’s macOS applications, meaning users running its apps on Mac computers are required to update.
We recently identified a security issue involving the third-party developer library Axios that was part of a broader industry incident. We found no evidence that OpenAI user data was accessed, that our systems were compromised, or that our software was altered.
Out of an…
— OpenAI (@OpenAI) April 11, 2026
The issue happened when a system used by OpenAI executed a compromised version of Axios through a GitHub Actions workflow used in the macOS app-signing process. This system is part of the process that signs macOS apps, which helps users know the apps are genuine and safe.
It had access to special certificates used to verify apps like ChatGPT Desktop and Codex. Although the company believes the certificate was likely not stolen. It has revoked and rotated the certificates as a precaution.
To protect users, OpenAI has released new versions of its macOS apps with updated security certificates. The company has made it mandatory for users to update their apps. From May 8, 2026, older versions will no longer receive updates, may not be functional.
Hackers can attack their target indirectly by using a third-party software supplier. This is called a supply chain attack. OpenAI has said the issue occurred due to a misconfiguration in a GitHub Actions workflow, but the issue has been resolved.
Also Read: Claude Mythos: Imminent Threat or Marketing Hype by Anthropic?



