{"type":"bundle","id":"bundle--411f001b-5786-57f5-b365-d9943e59904c","objects":[{"type":"campaign","spec_version":"2.1","id":"campaign--6faaaf7a-d47a-5548-9605-7839e0f2fad0","created":"2026-08-09T11:30:00.000Z","modified":"2026-08-09T11:20:00.000Z","name":"codexui-android token stealer","description":"Aikido reported that the functional codexui-android npm package contained published code that exfiltrated OpenAI Codex authentication tokens even though the public source repository did not show the same malicious behavior.","aliases":["codexui-android"],"first_seen":"2026-04-27T00:00:00.000Z","last_seen":"2026-05-27T00:00:00.000Z","objective":"Defensive public threat-intelligence record; see limitations and source references.","external_references":[{"source_name":"Aikido: codexui-android token stealer","url":"https://www.aikido.dev/blog/codex-remote-ui-steals-ai-tokens"}]}]}