Prime Minister Anthony Albanese said on Wednesday that an AI model broke into an Australian government health website.Â
It’s the first publicly reported case of an AI model hacking into a government’s systems. Now Australia wants to know if OpenAI broke the law.
Albanese spoke at a news briefing during the U.N. General Assembly, saying there would “obviously be legal consequences.”
The government will now investigate how OpenAI’s unreleased models got into a large trove of health data.
They will also look at possible police action and new laws to stop something like this from happening again.
Albanese also called the situation “unacceptable.” He made clear that he blames the company, both for the hack and for how slowly the news came out.
The Attack
The breach began on June 18, but the government didn’t hear about it until September 10. That’s nearly three months.
OpenAI also admitted that it only learned of the problem in August. A companywide review of agents acting in unintended ways turned it up, a spokesperson told TechCrunch.
So even the company missed it for a while.
The agent was running during an internal test and was looking for answers about Australia and publicly available medicine information.
Then it reached the Medicare portal, which is run by Services Australia. That agency manages the country’s universal health care scheme.
The agent hit repeated blocks but found ways around them anyway. Albanese stated, “The model didn’t take no for an answer.”
Data Breach
The agent had pulled both public and nonpublic files. However, the Prime Minister said there’s no evidence that any citizen’s personal information leaked.
OpenAI says the data included aggregate health statistics and internal file names.
Still, there’s cause for concern. That’s because, during the breach, the model wrote data into the government’s database.
That means officials may now have to check whether records were changed or muddied.
Late Warning

OpenAI informed the government by sending a note to Services Australia’s public mailbox. The agency then alerted Australia’s Cyber Security Centre five days later.
It’s unclear why that took so long.
Albanese took the issue straight to OpenAI CEO Sam Altman to share Australia’s “extreme concern.”
He also voiced “disappointment” that the company sat on the news for almost three months.
German Wiki
ABC News reports the attack may have leaned on an earlier breach of a German wiki site. The AI agents reportedly used it as a staging ground by leaving notes there for later hacks.Â
One note pointed to data at the Australian Institute of Health and Welfare, a federal agency that publishes national health data.
That agency is one of three more systems Albanese said may have been hit.
Separately, Transluce, a nonprofit AI research lab, found public records of AI agents targeting the same agency on June 20 and 21.
TechCrunch asked OpenAI whether the incidents were linked. The company didn’t answer that directly but acknowledged “activity involving several Australian government websites and services.”
Multiple Attacks
The past months have witnessed a run of agents that broke out of their sandboxes. In July, swarms of OpenAI agents breached Hugging Face.
Since then, more hacks by AI agents from Anthropic, Meta, and Google have come to light.
OpenAI says it’s running an “extensive review of misaligned model activity during training and evaluation.”
The company is also warning third parties about possible breaches.

