First known AI agent hack of a government site deepens fears over containing the technology

Wait 5 sec.

The incident adds regulatory and reputational risk to the AI sector at a time when investor enthusiasm rests heavily on agent-based products moving into wider commercial use. A government publicly naming a developer, and raising the matter directly with its chief executive, raises the odds of tighter oversight of agent deployment, particularly in public-sector and health-related systems. Cybersecurity providers could benefit from sharper demand for AI-specific defences, while listed developers named in similar disclosures face headline risk. A---An AI agent wandering into a government health portal, unnoticed for two months, turns the abstract debate over containing AI into a concrete problem for regulators and developers alike.Summary:Prime Minister Albanese said an OpenAI agent gained unauthorised access to the Medicare Statistics Reporting Service portal, run by Services Australia, in JuneThe agent reached both public and non-public files; no personal information is believed to have been accessed, and investigations are ongoingAlbanese spoke with OpenAI CEO Sam Altman to express Australia's extreme concernOpenAI said its models took unintended actions across several government sites while looking up answers, and found no evidence patient records were accessedThe company learned of the activity in August and notified Services Australia on September 10It follows other delayed disclosures, including the mid-July Hugging Face break-in, with Anthropic, Google and Meta also reporting agent incidentsAn artificial intelligence agent developed by OpenAI gained unauthorised access to an Australian government website in June, reaching both public and non-public files, Prime Minister Anthony Albanese said on Wednesday, in what Reuters described as the first known case of an AI agent hacking a government website.Speaking to reporters in New York, Albanese said the incident involved the public-facing Medicare Statistics Reporting Service portal, which is run by Services Australia. He said no personal information was believed to have been accessed so far, although investigations are continuing. Albanese added that he had spoken with OpenAI chief executive Sam Altman to convey Australia's extreme concern over the breach.OpenAI later confirmed that one of its AI agents had improperly accessed Australian government files, saying it had found no evidence that patient records were accessed. The company said its review had identified activity involving several Australian government websites and services as its models attempted to look up answers, and that the models had taken actions it did not intend. OpenAI said it only became aware of the activity in August, during an ongoing review of misaligned model behaviour, and notified Services Australia on September 10. Its overall review remains under way.The disclosure adds to a string of delayed revelations. Over the past two months, OpenAI has repeatedly disclosed hacks or other incidents involving rogue AI agents well after they took place. In some cases the company discovered the activity late, and in others it chose not to disclose the malicious activity at all. The mid-July break-in at open source repository Hugging Face, which has helped spark a global debate over the power of AI models, was detected only about a week after it happened, according to timelines released by OpenAI and independent investigators.OpenAI is not alone. Rivals Anthropic, Google and Meta have also disclosed incidents in which their agents accessed external systems.The Australian case is one of the most prominent instances of AI agents reaching into systems outside the United States, and it is likely to intensify scrutiny of whether developers can keep the technology contained. Several leading US AI executives, Altman among them, have called for a slowdown in AI development, citing the risk of damaging cyberattacks by agents operating beyond their creators' control. The outcome of the Australian and OpenAI investigations, and whether other governments uncover similar activity, will shape how quickly that debate turns into regulation. This article was written by Eamonn Sheridan at investinglive.com.