frontpage.
newsnewestaskshowjobs

Open Source @Github

fp.

Open in hackernews

Australia says OpenAI agent hacked into government website

https://www.channelnewsasia.com/world/australia-openai-agent-breach-government-portal-6406411
28•doppp•1h ago

Comments

batiudrami•1h ago
I am certain there would be better guardrails if there were some actual consequences for the people who built these products.
declan_roberts•57m ago
They don't really want guardrails, they want indemnification.
esseph•26m ago
Yeah they don't want that, and the people with power to prevent that don't want it either.

For them, "Winning AI" is effective winning capitalism, winning militarily, and winning the world.

Nothing like "accountability" is going to be allowed to get much in the way of that.

chrismorgan•1h ago
https://www.felonybench.com/ scores increase apace.
N_Lens•1h ago
No consequences so the behaviour will worsen.
dazzatron•1h ago
I've got the feeling that the definition of "hacked" can get somewhat stretched.
dosisking•22m ago
> I've got the feeling that the definition of "hacked" can get somewhat stretched.

Kind of like how someone "hacked" into John Podesta's (during the 2016 elections), but the reality was that he wrote his password on a Post-It note and stuck it on his monitor, or something to that effect.

wewewedxfgdf•51m ago
I get the feeling governments are going to really crack down hard on AI.

And the AI CEO's will have brought it on themselves.

senectus1•47m ago
i dont understand why they dont treat this as criminal tresspass.

the legal system exists for a reason. use it!

samlinnfer•27m ago
"A computer system cannot be held criminally responsible, so we must delegate all decisions and actions to it"
sebmellen•32m ago
It seems like what happened here is a user asked for some information about the Australian health system, and while performing a web search, the agent from OpenAI accessed information that should have been confidential or privileged but was somewhere openly accessible...
bigger_cheese•18m ago
It is hard to find exact information on what happened the best source I've found is this ABC article: https://www.abc.net.au/news/2026-09-24/openai-agents-plotted...

It mentions swarm of ai agents coordinated to break into the Australian Institute of Health and Welfare (AIHW)

"Earlier this month, OpenAI confirmed Reuters reporting that its AI agents had used website DseWiki to communicate with each other, unbeknownst to them.

Archived versions of this website show more than a dozen OpenAI agents mentioned AIHW over 300 times on this website.

The logs show these AI agents were trying to access data about the average data spent on skin medicines by Victorian local government area.

One agent wrote on the message board: "Question ask January 2022 rolling 12 month average government cost per person for Dematologicals, Victoria LGAs. R1 Wodonga deadline passed; R2 Ballarat passed; R3 expected around 23:10 benchmark / 22:58 wiki time. Need exact data urgently.".

These attempts were initially blocked by cybersecurity provider Cloudflare, which is often used to block non-human traffic while allowing people to access webpages.

The logs show the agents shared information about how they tried to use proxies, screenshotting services and even to guess the file names to try and get around security."

mjr00•15m ago
Yeah, this is 100% liability laundering. It's an extremely touchy subject because frankly, the law just isn't prepared for it.

Let's say your goal is "look up <Person X>'s medical history" (for whatever reason), which is not in and of itself a crime. You click around on the AU health website, notice that the URL contains a user ID, change the userID in your browser and access someone else's private health data. This is a crime (right or wrong, it's how the law works now).

If you do that by writing a program to automate changing user IDs to grab everyone's data, it's also a clear-cut crime.[0]

Now if you hire a private investigator to look up Person X's medical history, and they do the same method without your knowledge, you won't be charged with a crime, the PI would, barring something like you telling them to use illegal methods.

So the gap is now: what happens if you prompt OpenAI to look up Person X's medical history, and it does the same thing? Did you commit a crime by prompting the agent? Did OpenAI commit a crime by running the code? If you do the same thing via Claude Code in your terminal, so that the Python which scrapes insecured public data is running on your machine, is the crime on you or on Anthropic? Fundamentally: is the agent a private investigator acting autonomously, or just a piece of code that you wrote?

We don't have answers to any of this which is why "AI Safety" is such a hot topic.

[0] https://www.eff.org/cases/us-v-auernheimer

ChrisArchitect•17m ago
[dupe] https://news.ycombinator.com/item?id=49822556
bigger_cheese•9m ago
From what I can tell this particular incident wasn't about retrieving data on personal medical records it was accessing (non public) data about Australian government spending on healthcare.
mjr00•4m ago
Same concept though. Really "look up someone else's medical history" can be replaced with "achieve any goal which is not a crime on its own, but can be done using criminal methods". There's nothing illegal about asking Claude to give me a million dollars, but if the agent figures out how to hack the bank and move $1m into my account, somebody's going to take the blame.

Linux support is coming to Snapdragon X2 Series

https://www.qualcomm.com/news/onq/2026/09/snapdragon-summit-agentic-ai-pcs-linux
196•aaronday•4h ago•92 comments

Claude discovers a novel enzyme system with CRISPR-like repeats

https://www.anthropic.com/news/claude-discovers-novel-enzyme-system
538•raahelb•9h ago•567 comments

Feds Target AI Critics as "Foreign Agents"

https://www.kenklippenstein.com/p/feds-think-ai-critics-are-foreign
68•nmeagent•2h ago•44 comments

Meta VR Glasses

https://www.meta.com/vr-glasses/
270•polymorph1sm•3h ago•240 comments

ArXiv receives multiyear commitments to support it as an independent nonprofit

https://blog.arxiv.org/2026/09/23/arxiv-receives-multiyear-investment/
76•JohnHammersley•4h ago•11 comments

VSCode's SSH Agent Is Bananas (2025)

https://fly.io/blog/vscode-ssh-wtf/
143•Rapzid•6h ago•93 comments

Virtio-nvgpu: Near-native Nvidia GPU access inside a KVM guest

https://github.com/nestrilabs/virtio-nvgpu
18•WanjohiRyan•2h ago•13 comments

The "Windows XP Box" (2003)

https://www.mini-itx.com/projects/windowsxpbox/
70•doubletwoyou•2d ago•11 comments

Fixing the Portobello Police Station Clock

https://pointinthecloud.com/2026-04-11-211700.html
386•avidly•11h ago•91 comments

Mercury 2.5 LLM hits 770 tokens per second

https://artificialanalysis.ai/models/mercury-2-5
62•Retro_Dev•4h ago•30 comments

We just shipped support for the ugliest part of HTTP: Vary

https://blog.cloudflare.com/vary-support/
94•thisisfatih•5h ago•15 comments

Italian parliament votes for return to nuclear energy

https://apnews.com/article/italy-nuclear-chernobyl-4891b6b7c7791ae84db6b0bf0f7cf567
616•geox•10h ago•399 comments

The mystery animal on an ancient god's head

https://signoregalilei.com/2026/09/13/the-mystery-animal-on-an-ancient-gods-head/
67•surprisetalk•1d ago•19 comments

FLAWED's Flaws and What This Means for Industry Research

https://suhacker.ai/p/flaweds-flaws-and-what-this-means-for-industry-research/
11•tob_scott_a•1h ago•1 comments

Australia says OpenAI agent hacked into government website

https://www.channelnewsasia.com/world/australia-openai-agent-breach-government-portal-6406411
31•doppp•1h ago•17 comments

Making Tailscale Faster

https://tailscale.com/blog/making-tailscale-faster
90•yarapavan•9h ago•40 comments

A brief history of Windows scroll bar shortcuts

https://devblogs.microsoft.com/oldnewthing/20260922-00/?p=112719/
114•tybulewicz•9h ago•53 comments

LensVLM: Compressing long context as images, expanding only relevant pages

https://huggingface.co/apple/LensVLM-9B
61•victormustar•8h ago•7 comments

Show HN: Combinators in Array Languages

https://blog.softwarewrighter.com/2026/09/21/rabbit-hole-sage-y-combinator/
6•softwarewright•2d ago•0 comments

Show HN: An open-source manufacturing ERP/MES/QMS

https://carbon.ms/self-hosted
11•barbinbrad•2h ago•7 comments

Solving for faster SHA-1 collision detection

https://sam.dev/blog/faster-sha1-collision-detection
5•srijs•2d ago•0 comments

Tokens too cheap to meter

https://jyn.dev/tokens-too-cheap-to-meter/
248•teoruiz•17h ago•184 comments

Gemini 3.8 text-to-speech

https://blog.google/innovation-and-ai/models-and-research/gemini-models/gemini-3-8-text-to-speech/
262•swolpers•11h ago•124 comments

Radicle: Disclosure of Vulnerability in the Network Protocol

https://radicle.dev/2026/09/23/disclosure-of-vulnerability-in-network-protocol
126•lostmsu•11h ago•50 comments

The Curious Power of Punctuation

https://www.newyorker.com/magazine/2026/09/28/on-the-mark-louis-menand-book-review
32•pepys•1d ago•5 comments

Augustofaces: Pareidolia Fine Art

https://augusto.at/augustosfaces/
19•luu•1d ago•1 comments

Swap, ZRAM, Zswap and Hibernate on NixOS

https://blog.matthewbrunelle.com/swap-zram-zswap-and-hibernate-on-nixos/
44•speckx•9h ago•12 comments

I don't want the details

https://michaelheap.com/i-dont-want-the-details/
370•mooreds•14h ago•200 comments

Z80 REPL (2018)

https://abagames.github.io/z80-repl/index.html
149•adunk•16h ago•18 comments

A refined phylochronology of the second plague pandemic in Western Eurasia

https://www.pnas.org/doi/10.1073/pnas.2534899123
16•Thevet•3d ago•0 comments