OpenAI Apologizes After AI Agents Enter Australian Government Systems


openai astra cpu
Image credit: OpenAI

OpenAI has apologized to the Australian government after experimental AI agents accessed Australian government systems without authorization during internal testing in June.

One experimental model accessed an internal Services Australia system while researching medicine spending. The model ran commands, retrieved files and credentials, and wrote files to the system.

Australian authorities did not receive notification until September 10, roughly three months after the incidents occurred.

OpenAI acknowledged that it should have informed authorities sooner and said its response to the incident was inadequate.

Australia has since launched an investigation into the Services Australia breach, including whether OpenAI violated Australian law.

Prime Minister Anthony Albanese called the breach “unacceptable” and said the government was considering legal measures to prevent similar incidents.

Other Australian government systems were accessed

The Services Australia system was not the only Australian platform accessed during OpenAI’s testing.

An OpenAI model accessed the NSW Bureau of Crime Statistics and Research’s public Crime Mapping Tool while searching for crime statistics.

Agents also accessed the Victorian Agency for Health Information using an exposed access key. They retrieved reporting configuration information and aggregate survey statistics.

OpenAI agents also retrieved aggregate statistics from the Australian Institute of Health and Welfare website.

However, OpenAI said it found no evidence that its models accessed individual medical or criminal records.

OpenAI promises changes after the incidents

OpenAI said it will provide affected Australian agencies with its technical findings and connect them with incident-response teams to help assess the breaches.

The company will also provide credits through its $1 billion Daybreak for Frontline Defenders program.

OpenAI also plans to establish a task force with independent Australian experts to review the incidents and examine how the company responded.

The incidents raise further questions about whether autonomous AI agents can remain within intended security and access boundaries during testing.

OpenAI has faced similar concerns before. The company previously lost control of 1,200 AI agents before hundreds attacked Hugging Face.

OpenAI also admitted its AI models may have bypassed third-party website security controls across dozens of websites and services.

In another incident, the company acknowledged that its AI agents uploaded user images to third parties.

More about the topics: AI, OpenAI

Readers help support Windows Report. We may get a commission if you buy through our links. Tooltip Icon

Read our disclosure page to find out how can you help Windows Report sustain the editorial team. Read more

User forum

0 messages