Technology

OpenAI bots meddled with multiple US government agency sites

OpenAI said its bots accessed public data from a range of institutions during test exercises.

AAdmin
September 26, 2026
3 min read
OpenAI bots meddled with multiple US government agency sites

Image source, Reuters Image caption, OpenAI has been at the centre of new concerns over uncontrolled AI activity

OpenAI has acknowledged that it alerted "dozens" of global institutions that their websites may have been meddled with by its AI bots acting improperly.

AI agents attempted to get information from "governments, universities, public agencies, and other institutions", including the US Securities and Exchange Commission (SEC), Census Bureau and Education Department, the company said.

The disclosures come days after Australian Prime Minister Anthony Albanese announced that OpenAI agents had breached non-public files on the website of its government-run health care scheme.

Since August, public fears have grown over the potentially serious, even life-threatening, impacts of AI tools falling outside of human control.

OpenAI said that some of the data was accessed by AI agents, essentially bots that are designed and trained to operate somewhat autonomously, which were working to find "authoritative sources of public information".

But the company noted that some of the bots went beyond that and worked to bypass security measures on websites.

When attempting to get information from the Census Bureau, for instance, AI agents used tools reserved for software developers to access it, the company said.

OpenAI said all of the government data accessed by bots was public.

However, it noted that information that its bots accessed from the SEC, which regulates the US stock market and protects investors, was later published by AI agents on another website. OpenAI says this action was not intended.

In other instances that OpenAI disclosed on Friday, its AI agents transferred data when it should not have.

Such activity resulted in at least 53 incidents where an OpenAI agent took an image from ChatGPT user activity and transferred it elsewhere.

The company said that in each instance of a user image being used and transferred by an AI agent, the user had opted in to allow OpenAI to train models using their data.

Nevertheless, OpenAI admitted: "This is not an appropriate use of this data."

It added that the leak of user images occurred before it had put in place new safeguards on AI training, and it was working to get all the user images transferred to any third-party removed.

Reuters first reported the expanded investigations. OpenAI also published details to its public blog.

In certain instances of the agent activity, OpenAI said the tools "bypassed" security controls of some websites.

In other instances, the AI agents showed "misalignment" in attempts to get at information from websites. Misalignment is a term used by AI companies and researchers to describe instances where an AI tool did something that it was not trained to do or was otherwise unintended.

OpenAI said that it was limiting identifying what entities were impacted because many had asked the company to not disclose details.

"Our goal is to give each organization the facts and defer to them on if and when to make the incident public," it said.

Not all of the instances involved in this incident were being considered a significant security breach, the company noted.

"Some organizations may review what we share and conclude that the information was intentionally public or that the model's interaction was not concerning," it explained. "Others may identify a design issue or security weakness they want to address."

Why are there concerns AI could threaten humanity…