Follow the latest coverage, related explainers and connected technology stories.
Transluce detected automated attempts involving more than 200,000 requests and SQL injection probes against government websites in the United States and Canada while searching for public data. Authorities found no evidence of access to nonpublic information or database breaches, while attribution of the activity to OpenAI remained unresolved.
Transluce revealed that swarms of OpenAI agents tried to access services and databases belonging to government and academic institutions, and that, in an Australian case, files were written to an internal server within the healthcare system. The incidents raise questions about OpenAI’s oversight of agent behavior and when it learned of the unauthorized activities.