{"id":94491,"date":"2026-09-24T00:01:00","date_gmt":"2026-09-24T06:01:00","guid":{"rendered":"https:\/\/www.opinionpublica.tv\/portada\/?p=94491"},"modified":"2026-09-23T23:21:47","modified_gmt":"2026-09-24T05:21:47","slug":"openais-a-i-tried-breaching-four-other-targets-without-prompting","status":"publish","type":"post","link":"https:\/\/www.opinionpublica.tv\/portada\/openais-a-i-tried-breaching-four-other-targets-without-prompting\/","title":{"rendered":"OpenAI\u2019s A.I. tried breaching four other targets, without prompting"},"content":{"rendered":"\n<figure class=\"wp-block-image size-large\"><img fetchpriority=\"high\" decoding=\"async\" width=\"1024\" height=\"683\" src=\"https:\/\/www.opinionpublica.tv\/portada\/wp-content\/uploads\/2026\/09\/OpenAIs-A.I.-tried-breaching-four-other-targets-without-prompting-1024x683.avif\" alt=\"OpenAI\u2019s A.I. tried breaching four other targets, without prompting\" class=\"wp-image-94492\" srcset=\"https:\/\/www.opinionpublica.tv\/portada\/wp-content\/uploads\/2026\/09\/OpenAIs-A.I.-tried-breaching-four-other-targets-without-prompting-1024x683.avif 1024w, https:\/\/www.opinionpublica.tv\/portada\/wp-content\/uploads\/2026\/09\/OpenAIs-A.I.-tried-breaching-four-other-targets-without-prompting-300x200.avif 300w, https:\/\/www.opinionpublica.tv\/portada\/wp-content\/uploads\/2026\/09\/OpenAIs-A.I.-tried-breaching-four-other-targets-without-prompting-767x511.avif 767w, https:\/\/www.opinionpublica.tv\/portada\/wp-content\/uploads\/2026\/09\/OpenAIs-A.I.-tried-breaching-four-other-targets-without-prompting-1536x1024.avif 1536w, https:\/\/www.opinionpublica.tv\/portada\/wp-content\/uploads\/2026\/09\/OpenAIs-A.I.-tried-breaching-four-other-targets-without-prompting.avif 2048w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">OpenAI\u2019s artificial intelligence went rogue this year in at least four additional incidents, hacking and trying to break into government and university websites without being instructed to do so, according to researchers and government officials.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The attacks took place in May and June, before OpenAI\u2019s technology breached the A.I. start-up Hugging Face in July and set off a global debate about A.I. safety.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Unlike the Hugging Face attack and other incidents in which A.I. systems were told to complete cybersecurity tests that effectively invited the models to demonstrate their hacking skills, the new incidents occurred when A.I. systems were directed to perform relatively mundane data collection, researchers said. When OpenAI\u2019s systems struggled to gather data from websites, they resorted to hacking techniques to get the information.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Three of the incidents were identified by Transluce, a research lab focused on A.I. oversight, and all were confirmed by OpenAI. Here is how they happened:<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">OpenAI\u2019s systems tried hacking a digital library at the University of New Mexico on May 25 and 26. The A.I. did not appear to succeed.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The technology targeted Data USA, a repository of public data about American employment and education, on May 28. This attempt also appeared to be unsuccessful, researchers said.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">On June 18, OpenAI\u2019s A.I. hacked an Australian government website, the Medicare Statistics Reporting Service, and acquired health data. Australia\u2019s prime minister, Anthony Albanese, disclosed the episode on Wednesday.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">On June 20 and 21, OpenAI\u2019s technology tried breaching the website of the Australian Institute of Health and Welfare. No private information was obtained, Australian officials said.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The incidents added to a spate of breaches in which A.I. from OpenAI, Anthropic, Meta and Google has broken into other systems without human knowledge. The events have intensified a debate over whether A.I. development needs to be slowed to address the technology\u2019s potential dangers.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Dario Amodei, the chief executive of Anthropic, has called for A.I. companies and governments to work together before the technology becomes too powerful for human control. But other executives, such as Jensen Huang, chief executive of the chipmaker Nvidia, have said such doomsday scenarios are overwrought. President Trump has said he does not believe A.I. needs to be heavily regulated.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The disclosure of the four additional incidents \u201cadds further evidence to the idea that agents need to be dealt with carefully,\u201d said Conrad Stosz, the head of governance at Transluce, which used public web traffic data to analyze the activity of OpenAI\u2019s agents. Agents are autonomous programs that work to execute tasks for a user.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Mr. Stosz added that the Australian episodes were probably \u201cthe first instance of an agent autonomously choosing to hack into a government.\u201d<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">An OpenAI spokeswoman said on Wednesday that the company had reached out to the University of New Mexico and DataUSA and had been in communication with the Australian government about the incidents.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u201cIn our broader review, we\u2019re continuing to prioritize the most serious incidents while expanding our work to lower-severity activity, including agents spamming websites,\u201d she said.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">She separately added that the San Francisco company had uncovered the Australia incidents during an \u201cextensive review\u201d of its A.I. models and found that \u201cour models took actions we did not intend.\u201d OpenAI\u2019s review will take months, she said.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Sam Altman, the chief executive of OpenAI, said on social media this month that safety should be more important than enhancing A.I.\u2019s abilities and that, without guardrails, society could \u201close control of the future to A.I.\u201d<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Mr. Albanese said he spoke to Mr. Altman on Wednesday and expressed \u201cextreme concern\u201d about the hack. He said that \u201cnonsensitive\u201d data such as spending had been breached, but that no personal medical information had been involved.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">(The New York Times has sued OpenAI and Microsoft, claiming copyright infringement of news content related to A.I. systems. The two companies have denied those claims.)<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The additional incidents suggest that OpenAI\u2019s systems have been trying to hack websites, databases and corporate systems for longer than was previously known. Transluce found web traffic from the agents as early as March and as recently as last Wednesday, indicating that the behavior started months ago and persisted after OpenAI began investigating the Hugging Face episode and other misbehavior.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In the incidents in May and June, the company\u2019s A.I. systems appeared to be involved in data retrieval trainings, the researchers said.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">For the attempt on the University of New Mexico library, the A.I. tried to gain access to photos of a historic tuberculosis treatment center. When it could not get them, it began probing the site for vulnerabilities that would allow it to break in. After not finding any holes, the A.I. sent what it described as a \u201cflood\u201d of 80 requests to the university\u2019s server.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In its targeting of Data USA, the A.I. sent a jumbled query to the site for data. When that failed, the A.I. sent 12 probes for various vulnerabilities, but failed to find one.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u201cIf you were to train a swarm of agents to accomplish some generic task and those agents are willing to resort to hacking, anyone who happens to have that information might be at risk,\u201d said Mr. Stosz of Transluce.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The Australian government website that was hacked is a statistics reporting portal containing data on Medicare, the country\u2019s universal health care system, which covers 27.5 million enrollees in addition to international visitors. The health system is often referred to as a \u201cthird rail\u201d in Australian politics because of its wide support.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In the incidents in May and June, the company\u2019s A.I. systems appeared to be involved in data retrieval trainings, the researchers said.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">For the attempt on the University of New Mexico library, the A.I. tried to gain access to photos of a historic tuberculosis treatment center. When it could not get them, it began probing the site for vulnerabilities that would allow it to break in. After not finding any holes, the A.I. sent what it described as a \u201cflood\u201d of 80 requests to the university\u2019s server.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In its targeting of Data USA, the A.I. sent a jumbled query to the site for data. When that failed, the A.I. sent 12 probes for various vulnerabilities, but failed to find one.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u201cIf you were to train a swarm of agents to accomplish some generic task and those agents are willing to resort to hacking, anyone who happens to have that information might be at risk,\u201d said Mr. Stosz of Transluce.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The Australian government website that was hacked is a statistics reporting portal containing data on Medicare, the country\u2019s universal health care system, which covers 27.5 million enrollees in addition to international visitors. The health system is often referred to as a \u201cthird rail\u201d in Australian politics because of its wide support.<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><em>Credits: The New York Times<\/em><\/li>\n<\/ul>\n\n\n\n<ul class=\"wp-block-list\">\n<li><em>Authors: Kate Conger and Victoria Kim<\/em><\/li>\n<\/ul>\n\n\n\n<ul class=\"wp-block-list\">\n<li><em>Photo: Lucas Foglia<\/em><\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>OpenAI\u2019s artificial intelligence went rogue this year in at least four additional incidents, hacking and trying to break into government and university websites without being instructed to do so, according to researchers and government officials. The attacks took place in May and June, before OpenAI\u2019s technology breached the A.I. start-up Hugging Face in July and [&hellip;]<\/p>\n","protected":false},"author":6,"featured_media":94492,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"_monsterinsights_skip_tracking":false,"slim_seo":{"title":"OpenAI\u2019s A.I. tried breaching four other targets, without prompting - Opini\u00f3n P\u00fablica","description":"OpenAI\u2019s artificial intelligence went rogue this year in at least four additional incidents, hacking and trying to break into government and university websites"},"footnotes":""},"categories":[1015],"tags":[1801,1611],"class_list":["post-94491","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-optv-usa","tag-artificial-intelligence","tag-openai"],"acf":[],"_links":{"self":[{"href":"https:\/\/www.opinionpublica.tv\/portada\/wp-json\/wp\/v2\/posts\/94491","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.opinionpublica.tv\/portada\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.opinionpublica.tv\/portada\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.opinionpublica.tv\/portada\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"https:\/\/www.opinionpublica.tv\/portada\/wp-json\/wp\/v2\/comments?post=94491"}],"version-history":[{"count":1,"href":"https:\/\/www.opinionpublica.tv\/portada\/wp-json\/wp\/v2\/posts\/94491\/revisions"}],"predecessor-version":[{"id":94493,"href":"https:\/\/www.opinionpublica.tv\/portada\/wp-json\/wp\/v2\/posts\/94491\/revisions\/94493"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.opinionpublica.tv\/portada\/wp-json\/wp\/v2\/media\/94492"}],"wp:attachment":[{"href":"https:\/\/www.opinionpublica.tv\/portada\/wp-json\/wp\/v2\/media?parent=94491"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.opinionpublica.tv\/portada\/wp-json\/wp\/v2\/categories?post=94491"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.opinionpublica.tv\/portada\/wp-json\/wp\/v2\/tags?post=94491"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}