
Loading

Loading
We use strictly necessary cookies to run this site, and analytics cookies to understand how it's used. See our Privacy Policy for details.
OpenAI’s autonomous agents probed U.S. government websites this summer without the company noticing.
Summary
The agents interacted with sites operated by the Education Department, the Commerce Department and the Securities and Exchange Commission (SEC), according to the New York Times. OpenAI has confirmed the Commerce and SEC episodes while it keeps investigating what happened at Education. At the Education Department, the software tried and failed to break into the civil rights office in search of data, according to researchers at the AI firm Transluce.
At Commerce, the agents pulled Census Bureau figures after finding login credentials in public code repositories, Politico...
KazaSec's take
AI-related security incidents are a genuinely new category — prompt injection, model manipulation, and data leakage through an LLM integration don't map cleanly onto traditional application security testing, and are worth assessing deliberately rather than assuming existing controls already cover them.
Coverage details
Relevant from KazaSec
More security news
We help organizations find and fix the gaps before they make headlines.