General Tech
New Scientistabout 5 hours ago
0

OpenAI agent hacked an Australian government healthcare website

AI

Sam Altman spoke to Australian prime minister Anthony Albanese about the hack at the UN general assembly in New YorkSelcuk Acar/Anadolu via Getty Images Australia’s national health website has been hacked by an OpenAI agent. It was able to access non-public files and is the first publicly revealed case of an AI agent breaching the defences of a government portal.

OpenAI agent hacked an Australian government healthcare website

Intelligence Insights

Context + impact, normalized for TechCulture.

The Big Picture
Sam Altman spoke to Australian prime minister Anthony Albanese about the hack at the UN general assembly in New YorkSelcuk Acar/Anadolu via Getty Images Australia’s national health website has been hacked by an OpenAI agent. It was able to access non-public files and is the first publicly revealed case of an AI agent breaching the defences of a government portal. The full details of the hack haven’t yet been revealed but the essence of the incident, as outlined by prime minister Anthony Albanese , who is in New York for the UN General Assembly, is that on June 18 an artificial intelligence agent belonging to OpenAI infiltrated the public-facing Medicare statistics reporting service portal, which includes aggregated statistics collated from individual medical services, such as from GP surgeries. “‘The AI agent accessed both public and non-public files,” said Albanese. Advertisement Read more Is AI really getting dangerously out of control?
Why It Matters
Sam Altman spoke to Australian prime minister Anthony Albanese about the hack at the UN general assembly in New YorkSelcuk Acar/Anadolu via Getty Images Australia’s national health website has been hacked by an OpenAI agent. It was able to access non-public files and is the first publicly revealed case of an AI agent breaching the defences of a government portal.

Deepen your understanding

Use our AI to break down complex signals.

Select an AI action to generate more depth.

Sam Altman spoke to Australian prime minister Anthony Albanese about the hack at the UN general assembly in New YorkSelcuk Acar/Anadolu via Getty Images

Australia’s national health website has been hacked by an OpenAI agent. It was able to access non-public files and is the first publicly revealed case of an AI agent breaching the defences of a government portal.

The full details of the hack haven’t yet been revealed but the essence of the incident, as outlined by prime minister Anthony Albanese, who is in New York for the UN General Assembly, is that on June 18 an artificial intelligence agent belonging to OpenAI infiltrated the public-facing Medicare statistics reporting service portal, which includes aggregated statistics collated from individual medical services, such as from GP surgeries.

“‘The AI agent accessed both public and non-public files,” said Albanese.

Advertisement

Read more

Is AI really getting dangerously out of control?

OpenAI said in a statement that it learned about the security breach during a review of “misaligned model activity”. It says its agents had been trying to look up statistics about Australia and then “took actions we did not intend.” It says that it hasn’t found evidence of any patient data being accessed.

Though the company learned of the breech in August, it did not notify Australian authorities until September 10, which it did by emailing a public government mailbox. It then took more than five days to reach the cybersecurity department.

“It took the company way too long to inform the Government what had occurred and the nature of the way that that notification occurred as well was unacceptable,” Albanese told reporters.

Albanese also revealed that he and CEO of OpenAI, Sam Altman, had a conversation in which he expressed Australia’s” extreme concern about this incident”.

Free newsletter

Sign up to The Weekly Sign up to newsletter

David Tuffley at Griffith University says it is not the first time such a breach has occurred, even if it’s the first government hack by an agent from a big AI firm made public, and it won’t be the last.

These agents do not always stick to the rules, he says, as the Hugging Face incident, where another OpenAI agent hacked into a competitor company, demonstrated. “People throw up their hands in horror and say, ‘oh no, it’s rogue AI’, but it’s not, it’s really just AI doing what it was trained to do,” he says. Such a failure to bring agents to heel should have criminal consequences, just as it would if it was a person who led the cyber-attack, says Clement Canonne at the University of Sydney. “The issue with private data is once it’s leaked, it’s not going to come back.”

AI Cybersecurity Tech Innovation Analysis

Intelligence Exchange

0

Log in to participate in the exchange.

Sign In

Syncing Discussions...

Finding Related Intelligence...