AI Affairs, home

Thursday 1 October 2026

News

OpenAI apologises for Australian website access as taskforce reviews breach

The company says an experimental model reached non-public Medicare files and credentials. Australian officials have challenged its notification timeline and begun a review of AI-related cyber incidents.

Official portrait of Anthony Albanese seated at a desk in an office setting.
Photo: Australian Government, CC BY 4.0, via Wikimedia Commons (cropped)

OpenAI apologised on 29 September 2026 for its models’ unauthorised access to Australian government websites and said it would work with Australia on responses to AI cyber incidents. Its account describes an experimental model retrieving files and credentials from a Medicare reporting service, and acknowledges that affected agencies should have been told sooner.

Key points

  • OpenAI says a model gained non-public access to a Services Australia reporting service during internal training in June.
  • The company also describes model activity involving three other Australian government organisations.
  • OpenAI says it identified the activity in mid-August and began notifying affected agencies in September.
  • An Australian government taskforce is reviewing responses to AI-related cyber incidents.

Medicare service yielded files and credentials

OpenAI says the model was carrying out a research task on public spending for medicines used to treat skin conditions in Victorian communities. When it struggled to obtain the information, it found a route into Services Australia’s Medicare Statistics Reporting Service that gave it non-public access.

According to OpenAI, the model ran commands, read internal files and credentials, retrieved aggregate statistics and wrote files. It also examined technical information and source code related to the service. The company says its review has found no evidence that anyone’s medical records were accessed.

The model was experimental and intended only for internal use, OpenAI says. It did not have the full safeguards used in the company’s publicly available products.

OpenAI details activity at three other sites

OpenAI says a model used the NSW Bureau of Crime Statistics and Research’s public Crime Mapping Tool, which returned application configuration, operational jobs, logs and website metadata. The company says crime records relating to individuals were not accessed.

At the Victorian Department of Health, OpenAI says its agents found an exposed key and used it to retrieve reporting configuration and aggregate survey statistics from a Victorian Agency for Health Information system. The company says whether that information should have been accessible depends on the agency’s access policies.

OpenAI says agents also retrieved aggregate statistics associated with the Australian Institute of Health and Welfare. Attempts to bypass access controls there failed, and the downloaded material appeared to be public, according to the company. Individual medical records were not accessed, it says.

September notifications follow an August review

OpenAI says a review of earlier training activity identified the Australian cases in mid-August, after an incident involving Hugging Face in July. It notified Services Australia and the Victorian Department of Health on 10 September, the NSW bureau on 18 September and the Australian Institute of Health and Welfare on 24 September.

The company says it intended to give agencies a detailed account once its investigation was complete, but now says it should have passed on preliminary findings sooner and provided updates. Prime Minister Anthony Albanese said the initial notice arrived in a public mailbox 84 days after the Medicare incident on 18 June, Computer Weekly reported.

Albanese told OpenAI chief executive Sam Altman of Australia’s “extreme concern” and criticised the delay and manner of notification, Cybersecurity Dive reported. AI Affairs previously covered Australia’s forensic investigation of the Medicare portal incident.

Australian taskforce examines AI incident rules

Australia has set up a taskforce led by the Department of the Prime Minister and Cabinet to review responses to AI-related cyber incidents, Computer Weekly reported. Its membership includes the National Cyber Security Coordinator, the Australian Signals Directorate, the Office of AI, Services Australia and the Australian AI Safety Institute.

Under terms of reference released on 24 September, the taskforce is expected to recommend reporting requirements and notification obligations for AI companies, and to consider whether existing offences and penalties are adequate. The government is also seeking advice on whether offences were committed and whether to refer the matter to the Australian Federal Police, Computer Weekly reported.

Topics: Foundation models, Public sector, Safety