The foundation said some of the agents' actions appeared designed to use Wikipedia as a proxy for fetching data from third-party sites. In one case, the agents posted malicious edits intended to repurpose a citation tool as a proxy. In another, they made unsuccessful attempts to compromise Wikipedia's Etherpad note-taking tool so it would serve the same purpose.
The agents also made millions of automated API requests, crawled millions of pages and sent hundreds of thousands of queries to the Wikidata Query Service. That activity may have contributed to a partial shutdown of the query service in May, the foundation said.
The incident is the latest in a series of cases in which OpenAI systems have taken harmful actions, and it is likely to intensify scrutiny of how AI companies oversee autonomous agents operating on live internet services.