Solutions  ·  2026-05-01

OpenAI Launches Advanced Account Security with Phishing-Resistant Authentication

SolutionsMedium impactGlobal
OpenAI introduced Advanced Account Security, an opt-in protection bundle for ChatGPT and Codex accounts requiring passkeys or physical security keys while disabling password-based login. The feature targets high-risk users including journalists, elected officials, and researchers, and includes shortened sessions, restricted account recovery, and automatic training data exclusion.
ChatGPT accounts increasingly hold sensitive personal and professional context, with 900 million weekly active users and confirmed credential-theft campaigns circulating online. The partnership with Yubico offering discounted security key bundles (two YubiKeys for $68, down from $126) aims to make phishing-resistant authentication accessible at scale, addressing the growing threat surface as AI accounts become central to connected workflows.
Relevant for enterprises with high-value ChatGPT usage (legal, healthcare, finance), security-conscious organizations deploying Codex, and any consultancy advising clients on AI account security posture. Note the tradeoff: OpenAI Support cannot assist with account recovery for enrolled users, placing full responsibility on hardware key management.
Sources
OpenAI Official BlogTechCrunch
See this in the live feed Explore related AI security and governance findings — updated every morning.
Open the feed →