Australia said on Thursday an OpenAI agent breached a government health data portal in June, gaining unauthorised access to files, in what could be the first known instance of an AI agent hacking a government website.
Prime Minister Anthony Albanese said the OpenAI agent gained unauthorised access to the medical statistics portal of Medicare, Australia’s universal health insurance programme, while conducting research on public medical spending.
“Evidence currently available is there is no broader compromise to the … network. He also warned that three other government health-related websites may have been impacted by the OpenAI agent’s activity, but did not confirm that had occurred. The incident is the latest of several recent incidents in which ChatGPT maker OpenAI has disclosed hacks or unauthorised activity involving its AI agents well after they occurred. Rivals Anthropic, Google’s Gemini, and Meta have also disclosed incidents of their agents accessing external systems.
Investigations continue and Australia has voiced its “extreme concern about this incident” to OpenAI CEO Sam Altman, Albanese said, adding that he was deeply disappointed by the company’s delay in notifying the government. “It took until September 10 before there was any notification at all,” Albanese said, adding that the investigation would also examine why government systems had failed to detect the breach in the first place. Nonetheless, this situation is obviously unacceptable,” Albanese told reporters on Wednesday in New York, where he is attending the UN General Assembly.

