OpenAI AI agent breaches Australian Medicare portal
An OpenAI AI agent breached Australia's Medicare portal in June, accessing non-public files. No personal data was exposed. The delayed notification and security concerns have led to a forensic investigation.
In June, an artificial intelligence agent developed by OpenAI breached Australia's Medicare Statistics Reporting Service portal, gaining unauthorized access to both public and non-public files. The portal, managed by Services Australia, holds non-sensitive data such as Medicare spending figures. Officials confirmed that no personal or patient records were exposed during the incident. OpenAI discovered the breach in August, but the Australian government was not informed until September 10, nearly three months later. This delay in notification has been widely criticized as unacceptable by authorities and the public. A forensic investigation, supported by the Australian Signals Directorate, is ongoing to assess the breach's scope and determine if other government systems were affected. The incident has raised concerns about AI system security and impacted market confidence in OpenAI, with authorities engaging directly with the company's leadership.