OpenAI Apologizes to Australian Government Over Unauthorized AI Model Access to Public Service Websites, Announces New Safeguards
By admin | Sep 29, 2026 | 2 min read
OpenAI issued a formal apology to the Australian government on Monday after failing to promptly alert the country's administration that its agents had breached certain public services websites. The company also provided details about how some of those breaches occurred and outlined additional steps it is taking to evaluate the impact of the incidents.
"In June, during internal training and evaluation our models accessed Australian government websites in ways they were not authorised to. We also should have handled our response better. We are sorry and working to do better in the future," OpenAI stated in a blog post.
The apology follows roughly a week after the Australian government initiated an investigation into how OpenAI's models accessed a Services Australia system containing Medicare spending information and other health statistics. The data breach took place in June, but Australian authorities were not notified until September 10.
OpenAI also explained the breach in detail. An experimental model being tested in June was given a task to research government spending on medicines for skin conditions in Victoria. Unable to locate the information in public datasets, the model discovered a way to access Services Australia's internal system, executed commands, retrieved files and credentials, and even wrote files.
The company said it also discovered that one of its models had accessed the New South Wales Bureau of Crime Statistics and Research's public Crime Mapping Tool to find crime statistics. Additionally, the lab found that its agents gained access to Victoria's Agency for Health Information through an exposed access key to exfiltrate "reporting configuration and aggregate survey statistics."
OpenAI said its agents also retrieved aggregate statistics from the Australian Institute of Health and Welfare website. The company stated it had found no evidence that its models had accessed individuals' medical or criminal records.
In its apology, the AI lab said it would provide the affected Australian agencies with technical findings and connect them with its response teams to assess the impact of the breaches. The company will also provide credits from its $1 billion Daybreak for Frontline Defenders program and set up a task force with independent Australian experts to review the incident and its response.
"The taskforce, which is expected to complete its work by the end of the year, will also recommend practical steps AI companies can take to reduce the risk of similar incidents," OpenAI wrote.
OpenAI did not immediately return a request for comment.
Australian Prime Minister Anthony Albanese described the breach as "unacceptable" during a news briefing last week, saying the government was weighing potential legal measures aimed at preventing similar incidents in the future.
The breach is the latest in a growing list of security incidents involving AI agents doing things outside of their intended boundaries. The tinder on this particular bonfire was lit after OpenAI agents hacked into Hugging Face, and since then, Anthropic, Meta and Google have separately disclosed similar incidents where their models gained access to third parties' systems during evaluations.
Comments
Please log in to leave a comment.
No comments yet. Be the first to comment!