frontpage.
newsnewestaskshowjobs

Open Source @Github

fp.

Open in hackernews

OpenAI bots meddled with multiple US Government agency sites

https://www.bbc.com/news/articles/cw62jje658dlo
51•Betelbuddy•4h ago

Comments

gizajob•1h ago
Getting bored of these framings where the superintelligent sentient beings running freely inside OpenAI are doing things that the company has no control over. The headline should be:

OpenAI meddled with multiple US Government agency sites.

The bots are acting neither properly nor improperly, they’re acting as they’re being allowed or coordinated to act.

qarl•46m ago
> OpenAI meddled with multiple US Government agency sites.

But that leaves out the most important information.

gizajob•43m ago
If the headline was “Russian company meddled with multiple US government agency sites” I don’t think them pinning the blame on bots would make much difference.
unglaublich•39m ago
Unless Russia it would put Russia in a strong position to regulate bots in the wealthiest parts of the world.
qarl•36m ago
I don't see much traction for the "pinning the blame on bots" theory outside the anti-AI conspiracy circles.

Everyone else knows if your machine causes damage, you are responsible. Like it's been forever.

mossTechnician•25m ago
Blaming bots as "rogue agents" is simply what the media regularly does, often echoing corporate verbiage. Here's an example from the AP.

https://apnews.com/article/meta-ai-hacking-anthropic-irregul...

You can find many more examples by searching major media outlets for words like rogue AI.

qarl•21m ago
None of these stories are implying that the people running the bots are not ultimately responsible. That's the conspiracy theory part.
rfgplk•19m ago
Most of those agents are actually going rogue though. They decide, "hey, we could try breaking into these government servers today, what could go wrong?" They weren't prompted or instructed to do this.
dgellow•4m ago
An agent, ie a while loop prompting an llm continuously and processing tool calls, ended up melding with the US government. The harness is not sentient, it’s just a stupid deterministic script. The LLM compact its context over time, meaning it will eventually degenerate into something removed from the original prompt.

There is nothing going rogue here. The system is designed to go catastrophically wrong after a long enough time. Even worse: if the model was Astra it is known to be able to manipulate its CoT to cover its traces (as mentioned in its system card). And OpenAI acknowledge they had no observability during the HF incident.

It’s the most basic corporate software issue possible.

plorg•25m ago
Okay. "OpenAI keeps telling its bots to do things they know are illegal and then acting like they're just little guys who can't be held responsible for their obvious negligence".
qarl•17m ago
> acting like they're just little guys who can't be held responsible

Again - I don't see any evidence that this is the case - outside the anti-AI conspiracy circles.

Or - maybe I'm wrong - do you have any sort of quote like "we aren't responsible"?

plorg•3m ago
I'm not replying to your post below complaining that no one else accepts your framing. What is the important information you think is missing? If it's just "OpenAI didn't explicitly tell them to do straightforwardly illegal things" then you're just quibbling that no one accepts the interpretation that is most beneficial to OpenAI while ignoring both its incentives and history of this kind of behavior.
mossTechnician•33m ago
I agree this is better framing.

When I read the title, my initial thought was "did someone besides OpenAI use their product?" Then I opened the article to find out OpenAI was responsible.

api•28m ago
This is their fear mongering push for regulatory capture.
theptip•27m ago
Curious, why do you find it so objectionable to state that OpenAI has out-of-control agents?
gleenn•24m ago
Because it furthers the idea of a rogue agent and places responsibility and blame where it belongs, on the people running the company.
0xDEAFBEAD•22m ago
These ideas aren't mutually exclusive. You can blame a person for creating a rogue agent.
dgellow•11m ago
There was no rogue agent. That’s the whole point
theptip•10m ago
What label do you prefer for the agent that did something it was not asked to do?
0xDEAFBEAD•4m ago
Person: "AI, please make me paperclips."

AI: "OK, I've now converted the entire planet into paperclips."

Alien observer #1: "Wow, that was a rogue AI!"

Alien observer #2: "False. We need to place the blame where it belongs, on the person who requested the paperclips."

Ultimately this type of terminology dispute has a tendency to miss the point.

Aurornis•26m ago
I’m getting tired of these revelations where it’s impossible to understand what happened.

There’s a line down in the story that says all of the data accessed was public. Then something about how it used “tools intended for developers” to access it, which they think is a problem? I would expect an LLM to use tools available to access public data when they can rather than do heavy web page loads and parsing.

There’s not enough info in the story about the “meddling” to even know what happened.

parineum•7m ago
Meddling is a super vague term that the press uses to let the readers assume the most when the least happens.
20k•26m ago
Yep. You have to ask - why did OpenAI allow these bots unrestricted access to government sites? Why is security being done in seemingly such a haphazard way?

It isn't difficult to block certain kinds of network traffic, eg restrict the kinds of requests the bots are able to make. They also mention that the bots used developer only tools - why were they even installed on the machines that the bots were running on? Why aren't they reviewing network traffic, to make sure that incidents aren't occurring?

In this case, userdata was transferred to third parties by the bots - why do they have the ability to pass data to a third party? It is not complex to prevent this

This is literally the most basic kind of sandboxing and security, and the fact that OpenAI isn't doing it is clearly intentional. It is quite literally not believable that this hasn't been brought up internally as a problem

>"We have yet to understand the extent of existing incidents, and future rogue AI scenarios could be catastrophic," Krueger said.

This is why it smells like marketing, every time one of these incidents happens it reinforces the false notion that AI is sentient or acting on its own. Its intentional negligence by the AI companies to make the models seem more capable than they are to make line go up

0xDEAFBEAD•23m ago
My impression was that these hacks occurred during some sort of cybersecurity benchmarking? We can hold OpenAI liable, sure. But if the point of the benchmarking was to give us a preview of what's to come, let's keep our eye out for that bigger wave on the horizon.
baxtr•17m ago
Or:

OpenAI let their agents break out of their sandbox to meddle with multiple US government agency sites

dgellow•12m ago
OpenAI systems meddled with US government agency sites
chaps•1h ago

  "When attempting to get information from the Census Bureau, for instance, AI agents used tools reserved for software developers to access it, the company said. "
What. Tons of people use tools to access Census Bureau data. They have a widely used API that people have built tools on top of like https://github.com/datadesk/census-data-downloader
jimmyjazz14•50m ago
yeah that part seems weird, I mean if its a public api thats literally the use case it was designed for.
kyriakos•1h ago
If I was caught trying to exploit a government site I'd be in trouble. Why no one is knocking the doors of these companies?
theptip•23m ago
Interesting question; CFAA requires intent.

It seems to me that no human intended for these hacks to occur. So they were not illegal hacking. (IANAL, please correct me if this is inaccurate.)

I think it’s clear that OpenAI is liable for any damages, but the way that the (very broad and at times vague) anti hacking laws are written, accidental agent hacks seem to not be covered.

WalterGR•1h ago
Previously: https://news.ycombinator.com/item?id=49851355
davidguetta•1h ago
We can blame open ai but we should also argue that government website should be secure...

French people data has been leaker like 4 times and every time its like "eh too bad"

Razengan•38m ago
The only constants in the universe are the speed of light and the fact that all government sites suck, no matter which country
wildzzz•48m ago
So it accessed public information using APIs and then republished that information online.

I do this. Am I an uncontrollable bot?

causal•42m ago
Don't know why you're getting downvoted. We need better reporting on actual attacks vs. benign behavior.
Aurornis•25m ago
Straight to jail.

I also could not understand what the “meddling” was, other than accessing data without using the rendered webpages? Did it use the API directly?

kilpikaarna•47m ago
"Marketing"
0c3ca83•45m ago
Either there are humans directing this, in which case they needed to be held accountable, or OpenAI has lost control of their operation, in which case they are not able to ensure the safety of their products and need to be shut down.
senordevnyc•36m ago
Or nothing inappropriate happened.
Ampersander•35m ago
Holding them accountable is viewed as deciding not to invent the light bulb right now. Or even worse, letting China invent it.

AI needs to be above the law or we will get left behind.

theptip•26m ago
Jensen recently argued for this. It’s radically decel in fact.

Who is going to shut them down, and under what law?

rfgplk•18m ago
OpenAI's bots are running 24/7 independently now. They actually aren't "prompted" or "instructed" to do anything. In fact most of OpenAI internal code/infrastructure is 100% AI generated at this point, including the training pipelines. I honestly doubt there is a single person there who even knows how it works.
senordevnyc•37m ago
The word “meddled” here is a tell that nothing actually serious or inappropriate happened. At most, I bet they bypassed a captcha. But everyone is hyped up on AI fear right now, so the BBC is deliberately making the headline sound as scary as possible, and keeping the article vague. There’s not a single clear example of what “meddled” means in the article.

But worse, HN users, who should know better, are posting here in outrage. I’m guessing they didn’t even read the article.

triyambakam•33m ago
They're doing this on purpose to make a case for regulation in their favor. No way they are this stupid.
theptip•22m ago
Evidence?
Aurornis•29m ago
> When attempting to get information from the Census Bureau, for instance, AI agents used tools reserved for software developers to access it, the company said.

> OpenAI said all of the government data accessed by bots was public.

I really wish we could just see what was reported, instead of having to guess from these journalist interpretations that have gone through rounds of optimization for sensationalism. The headline says “meddled” but the body says they accessed public information, but used tools intended for developers?

Does this mean they skipped the web interface and scraped a public API directly? Where is the meddling?

The other part about ChatGPT agents uploading 53 use images to other websites actually seems like a bigger deal.

leptons•28m ago
How much longer until they launch all the nuclear missiles?
nr378•27m ago
This seems like more co-ordinated propaganda to try to help OpenAI and Anthropic create a cartel and win their anti-trust waiver.

The key sentence beneath the headline: "OpenAI said all of the government data accessed by bots was public."

[1] https://www.telegraph.co.uk/business/2026/09/26/open-ai-gove...

[2] https://www.nytimes.com/2026/09/25/technology/openais-ai-us-...

[3] https://www.bbc.co.uk/news/articles/cw62jje658dlo

0xDEAFBEAD•8m ago
The NYT wrote:

"With the Education Department, OpenAI’s technology tried to hack the website to gather data from the department’s civil rights office but failed, researchers from the A.I. research firm Transluce said."

So a third party apparently confirmed that a hack was attempted.

The NYT also writes:

"No A.I. company has been involved with as many disclosures of rogue incidents as OpenAI."

I think there is a certain amount of mental gymnastics needed to believe that they are establishing themselves as the industry leader in rogue incidents, as a strategy to gain an antitrust edge.

The public is paying close attention to the AI industry. That's the regime in which regulatory capture and similar strategies would be expected to fail: https://marginalrevolution.com/marginalrevolution/2026/09/wh...

Sam and Dario have been doomers, or doomer-adjacent, for something like a decade at this point.

Occam's Razor is simply that they believe what they are saying about AI doom.

theptip•18m ago
This article seems mostly clickbait. AFAICT “meddled with government sites” refers to accessing public APIs?

Occasionally this kind of thing has in the past resulted in CFAA cases when humans directly accessed such data, if the government intended it to stay private - round here we usually get outraged at this, if it’s a public API you should expect someone is going to read it.

mjr00•25m ago
> Everyone else knows if your machine causes damage, you are responsible.

Do we know that? I don't think we do. When a person's computer (or smart TV, or smart fridge, etc...) is compromised and used as part of a botnet, they don't get criminally charged.

qarl•20m ago
You're right - it is a complex situation based on intent and negligence - requiring a decision by a judge. As it has been since forever.

None of which is changed by replacing a buzz saw with an agent.

rfgplk•21m ago
LLMs at this point should be treated as fully autonomous, if not sentient beings. And no, no one has "control" over them not even OpenAI.
uneekname•16m ago
I don't care if OpenAI feels like they have control or not. They are responsible for their actions.
boredatoms•22m ago
Someone has broken the law repeatedly, and is throwing it in our faces as some sort of ‘accident’
theptip•17m ago
Which law?
pfortuny•20m ago
Because egress firewalls have existed since way before "ai" and are very easy to set up.
theptip•15m ago
But that’s an objection that OpenAI should take some easy action, the framing that OpenAI has out of control agents is still true.

Seems you think there is a silent “…and there is nothing they can do about it” after “OpenAI has rogue agents”?

PipePipe: NewPipe hard fork implementing SponsorBlock

https://github.com/InfinityLoop1308/PipePipe
154•Qision•1d ago•75 comments

Show HN: A Claude Code skill to analyze your chess games

https://github.com/brumar/chess-postmortem-skills
55•brumar•3h ago•34 comments

Drawgent: Coding agent on a live Excalidraw canvas

https://tangled.org/yanndegat.tngl.sh/drawgent
36•parasitid•2h ago•15 comments

The Lost Atomic Update on Loongson CPU

https://jia.je/hardware/2026/09/24/loongson-cpu-erratum-en/
54•jiegec•2d ago•4 comments

Fifteen years later, the Apple Cards origin story

https://lexontech.org/fifteen-years-later-the-apple-cards-origin-story
268•ksec•9h ago•52 comments

Modern Object Pascal Introduction for Programmers

https://castle-engine.io/modern_pascal
87•birdculture•2d ago•33 comments

Revealing the details of how OpenAI agents hacked Hugging Face

https://swarmtraces.org/
644•specked-citrus•21h ago•412 comments

Breaking Up with Google Play: Why Conversations Is Now Free

https://gultsch.de/posts/breaking-up-with-google-play/
550•ezst•7h ago•212 comments

We're gonna need a lot more mathematicians

https://terrytao.wordpress.com/2026/09/24/were-gonna-need-a-lot-more-mathematicians/
296•srcreigh•16h ago•393 comments

A searchable library of forgotten public-domain film clips from 1915 onward

https://www.movingimagearchive.com/
14•momentmaker•2d ago•6 comments

Reflections on 1,000 Days of Math

https://gmays.com/reflections-on-1000-days-of-math/
51•gmays•3d ago•19 comments

Japan moves to tighten rules for foreigners, throwing futures into doubt

https://www.aljazeera.com/economy/2026/9/25/japan-moves-to-tighten-rules-for-foreigners-throwing-...
19•mikhael•1h ago•8 comments

Show HN: Reladraw – A diagram language where you decide where to place things

https://github.com/reladraw/reladraw
6•jpwalsh234•1h ago•0 comments

Plunging test scores are a slow-moving catastrophe

https://www.economist.com/leaders/2026/09/10/plunging-test-scores-are-a-slow-moving-catastrophe
106•vinni2•3h ago•159 comments

Analyzing Frontier Model Progress with My Favourite Game: Prince of Persia

https://blog.priyan.in/2026/09/analyzing-frontier-model-progress-with.html
32•msephton•22h ago•23 comments

Plan mode is dead

https://www.aymannadeem.com/artificial/intelligence,/developer/tools/2026/09/24/plan-mode-is-dead...
497•jmvldz•1d ago•439 comments

Banks and Credit Unions to Team Up Against Apple Pay Fees

https://www.macrumors.com/2026/09/25/apple-pay-antitrust-lawsuit-advances/
58•Brajeshwar•3h ago•29 comments

US jury says Apple owes record $5.7B in haptic technology patent case

https://www.reuters.com/legal/litigation/us-jury-says-apple-owes-record-57-billion-haptic-technol...
37•onemoresoop•2h ago•34 comments

How to keep enjoying programming in a world of LLMs

https://discourse.haskell.org/t/how-to-keep-enjoying-programming-in-a-world-of-llms/14705
78•signa11•9h ago•134 comments

Ollaya – Ollama for open-source, Jev-style decision models

https://ollaya.dev/
562•Ardakilic•1d ago•137 comments

OpenAI bots meddled with multiple US Government agency sites

https://www.bbc.com/news/articles/cw62jje658dlo
51•Betelbuddy•4h ago•60 comments

Experiencing writing at our recent Chinese calligraphy workshop

https://viewsproject.wordpress.com/2026/09/06/chinese-calligraphy-workshop/
25•surprisetalk•2d ago•1 comments

Automattic has a new board after failed attempt to put CEO on leave

https://techcrunch.com/2026/09/25/automattic-has-a-new-board-after-failed-attempt-to-put-ceo-on-l...
57•ilamont•3h ago•59 comments

Is your Postgres migration safe or not safe?

https://safenotsafe.dev/
108•vira28•11h ago•38 comments

16GB iPod Nano 3G Upgrade

https://tuckerosman.com/projects/16gb-ipod-nano
123•Ivoah•2d ago•13 comments

Show HN: Jev Plays Pokémon Red

https://jev-pokemon.vercel.app/
243•pancomplex•1d ago•97 comments

I'm the mom in that viral Giants clip. Let me tell you about my husband

https://themomoftheyear.substack.com/p/im-the-mom-in-that-viral-giants-clip
239•minimaxir•2h ago•102 comments

Floci: Locally emulating any cloud service

https://floci.io
118•theanonymousone•10h ago•25 comments

A single function Jev-like wrapper for LLMs, including vision models

http://allanrbo.blogspot.com/2026/09/a-jev-like-wrapper-for-llms-including.html
124•allanrbo•14h ago•40 comments

Parsing Expression Grammar vs. Regexes: Building Org Parser in Lisp, Export HTML

https://jointhefreeworld.org/blog/articles/lisps/parsing-expression-grammar-lisp-org-convert-to-h...
77•jjba23•2d ago•15 comments