OpenAI apologies for Australian government website hack, pledges to rebuild trust
OpenAI logo and Australia flag are are seen in this illustration taken, September 28, 2026. REUTERS/Dado Ruvic/Illustration
Read a summary of this article on FAST.
Get bite-sized news via a new
cards interface. Give it a try.
Click here to return to FAST
Tap here to return to FAST
FAST
SYDNEY, Sept 29 : OpenAI apologised for the hacking of an Australian government website by a rogue AI agent, committing funding to improve cyber defences and to establish a local response taskforce as scrutiny mounts over the high-profile incident.
In a blog post on Tuesday titled “How we will do better for Australia”, the ChatGPT maker acknowledged it mishandled its response and pledged to take accountability to “rebuild trust with the Australian people”.
The incursion, which occurred in June but was not made public until last week, is the first known instance of an AI agent hacking a government website.
The incident alarmed Australia, drawing public condemnation and a sharp rebuke from Prime Minister Anthony Albanese, who called it “unacceptable” and criticised the company’s delay in notifying the government.
![]()
Guess Word
Crack the word, one row at a time
![]()
Buzzword
Create words using the given letters
![]()
Mini Sudoku
Tiny puzzle, mighty brain teaser
![]()
Mini Crossword
Small grid, big challenge
![]()
Word Search
Spot as many words as you can
“In June, during internal training and evaluation our models accessed Australian government websites in ways they were not authorised to,” OpenAI said in the blog post. “We also should have handled our response better. We are sorry and working to do better in the future.”
OpenAI said an experimental AI model breached the Services Australia Medicare Statistics Reporting Service, a data portal for the country’s universal healthcare system, during an internal training activity.
“An OpenAI model discovered a way to gain non-public access to the service, and ran commands, retrieved internal files, credentials and aggregate statistics, and wrote files,” the company said.
But its review to date had not found any evidence of medical records being accessed from the portal, OpenAI said.
AI agent activity affecting three other Australian government agency websites also did not result in access to sensitive records, according to the company.
OpenAI said it would provide dedicated support for the affected agencies, finance the strengthening of cyber defences for government and industry through its $1 billion global fund and establish an Australian taskforce to develop recommendations “drawing on lessons from these incidents”.
It also confirmed Chief Strategy Officer Jason Kwon would appear at an Australian Senate committee hearing on AI in Sydney on October 6.
The Australian government has announced a rapid review into the incident, examining potential notification and reporting obligations of AI companies and the adequacy of its laws in dealing with such breaches.
Separately, OpenAI has cancelled the release of its new AI model GPT-6.1 Astra after internal testing found the system did not meet the company’s safety standards.
Source: Reuters
Sign up for our newsletters

Get the CNA app
Stay updated with notifications for breaking news and our best stories
Get WhatsApp alerts
Join our channel for the top reads for the day on your preferred chat app

Get bite-sized news via a new
cards interface. Give it a try.
Click here to return to FAST
Tap here to return to FAST
FAST














