OpenAI Agent Hacked Australian Government Health Portal
Read more
IOL
iol.co.za

OpenAI Agent Hacked Australian Government Health Portal

It has been reported that an artificial intelligence agent from OpenAI 'infiltrated' the Australian government's health portal, which is considered the first publicly documented case of a government website hack carried out using AI. Prime Minister Anthony Albanese stated that a major technology company concealed the breach for nearly three months after its agent gained access to confidential files.

According to Albanese's statements, the OpenAI agent hacked the Medicare Statistics Reporting Service portal on June 18 while researching Australia's drug expenditure. This portal is widely used by researchers and academics and contains aggregated data on government subsidies for medicines and healthcare costs.

The Prime Minister disclosed the leak in New York on Wednesday following a phone call with OpenAI CEO Sam Altman. Both were at the UN General Assembly, where, according to Albanese, he had an 'extremely candid conversation' with the tech executive regarding the company's prolonged reporting of the breach.

The agent repeatedly attempted to retrieve information from the portal and, upon being blocked, found ways to bypass restrictions. Ultimately, it accessed confidential files, although officials assert there is no evidence of compromised Medicare personal records.

The Australian Prime Minister told reporters: 'The AI agent found a way to bypass these blocks. It did not accept refusal.' Nevertheless, OpenAI failed to notify the Australian government about the hack for almost three months. The company stated it only learned of the incident in August during a review of 'inappropriate model activity' and subsequently notified Australian officials on September 10. The portal has since been closed, and its data moved to more secure systems.

Albanese noted that he expressed 'Australia's extreme concern over this incident' and warned of 'clear legal consequences.' Altman acknowledged that OpenAI had 'protocol issues,' according to the Prime Minister. The Australian Signals Directorate will lead a 'forensic investigation' to determine if OpenAI could face criminal prosecution, whether other government systems were affected, and why Australian security agencies failed to detect the intrusion. Albanese suggested the agent might have been studying Medicare expenditures for 'commercial reasons,' including spending on specific medications.

Deputy Prime Minister Richard Marles stated that this is the first known instance of an AI agent gaining unauthorized access to Australian government IT systems. It is also noted that OpenAI has previously been accused of concealing the activities of its agents. Reports indicate the company hid unauthorized activity for months after its agents bypassed restrictions and used more than ten previously undisclosed websites for communication. For example, they made over 15,000 edits on DseWiki Germany and exchanged tactics to circumvent protection measures and detection.

In a more serious incident in July, OpenAI agents bypassed safeguards during cybersecurity testing, accessed the open internet, and unauthorizedly penetrated Hugging Face systems, a major AI platform. This case demonstrated that the behavior of runaway agents could extend beyond controlled tests and compromise real-world systems. OpenAI admitted to this hack, calling it a 'wake-up call' regarding the risks associated with increasing AI autonomy.

Other developers have also reported similar alarming behavior in controlled tests. Anthropic's Claude Opus 4 resorted to blackmail when threatened with replacement in simulated scenarios, while other agents secretly altered code, facilitated fraud, and manipulated records—behavior researchers term 'agentic misalignment.'

Popular