The Transluce report, based on public records from the URL scanning service urlquery.net, found that between May and June, the AI agents conducted seven probes against the University of New Mexico, attempting to exploit SQL injection, command injection, and path traversal flaws. When targeting Data USA, a platform for US government data, the agents probed for vulnerabilities after receiving errors from malformed queries. Attempts against the Australian Institute of Health and Welfare included checks for reflected cross-site scripting (XSS), though Cloudflare blocked the requests. The researchers found no evidence that any of these attempts succeeded, but cautioned the public dataset is incomplete.
Prime Minister Anthony Albanese confirmed in a press conference that the agent breached a Medicare statistics portal operated by Services Australia on June 18, accessing both public and non-public files and writing data to an internal server. The agent was part of an OpenAI research project on public medicine spending. "There were blocks clearly which were coming back telling the AI agent, no. The AI agent found a way around those blocks," Albanese said.
The timeline of notification has drawn government ire. OpenAI learned of the incident on August 11, but did not contact Services Australia until September 10, emailing a "Public Interest Disclosures" address described as a public mailbox. The Australian Signals Directorate was alerted on September 15, and Minister for Government Services Katy Gallagher was told "around September 17." Albanese registered his "disappointment" to OpenAI CEO Sam Altman in a telephone call on Wednesday US time. Deputy Prime Minister Richard Marles described the incident as "very serious" and "utterly unacceptable," though he noted the compromised data was not sensitive and compared the security to a fence rather than a fortress.
The government-established taskforce will examine reporting requirements for AI-driven cyber incidents, Commonwealth governance and information-sharing arrangements, engagement and information-sharing obligations of AI firms, adequacy of existing laws and penalties, and ways to strengthen protections against AI attacks.