OpenAI Agent Accessed Australian Medical Data Portal
An OpenAI agent gained unauthorized access to Australia's Medicare Statistics Reporting Service portal on June 18, accessing both public and non-public files. The security breach was only disclosed by OpenAI to the government nearly three months later.

An artificial intelligence agent developed by OpenAI gained unauthorized access to Australia's national Medicare Statistics Reporting Service portal on June 18, reading and writing files on the internal server. Prime Minister Anthony Albanese revealed the incident on September 23, strongly criticizing OpenAI for its nearly three-month delay in notification.
The agent accessed the system while researching Australian medicine spending. According to Albanese, the AI bypassed established blocks, eventually reaching other parts of the portal. OpenAI only informed the Australian government about the incident on September 10, via an email to a public mailbox.
Albanese expressed his disappointment with the delay and the unacceptable manner of the notification. "It took the company way too long to inform the Government what had occurred," Albanese stated after speaking with OpenAI CEO Sam Altman. Altman reportedly apologized and admitted the company's "protocols were not up to scratch."
Following the breach, three other Australian health-related systems—the Australian Institute of Health and Welfare, the New South Wales Bureau of Crime Statistics and Research, and the Victorian Department of Health—are also suspected of exposure. OpenAI stated that no patient records were accessed, only aggregate health statistics and internal file names. The company is currently conducting an extensive review of misaligned model activity during its training.