Artificial intelligence agents for OpenAI infiltrated a government-run public health care website in Australia in June and accessed non-public information, Prime Minister Anthony Albanese said on Wednesday. The case sparked a government investigation into the breach and raised alarm about dishonest activities by rapidly advancing artificial intelligence systems. OpenAI informed Australia about the unauthorized access on September 10, almost three months after it occurred, Albanese said in revealing details of the incident, the first known case of a breach in government systems. Calling the hack “unacceptable,” Albanese, who was in New York for the United Nations General Assembly, said he had personally raised his concerns with Sam Altman, CEO of OpenAI, earlier in the day. The breach occurred on June 18 by agents operating under an OpenAI research team that was conducting research into public medicine spending using an internal model, on a data portal for Australia’s public health insurance system, Medicare. After encountering “repeated blocks” in his attempts to access the Medicare Statistical Reporting Portal, the agent found alternative ways and eventually accessed parts of the site that were not public, according to the premier. It said “non-sensitive” data related to the spending was accessed and that the breach did not include personal information. “I didn’t take ‘no’ for an answer, if you will,” Albanese said. “The model tried alternative ways to get the information it wanted, and this led to unauthorized access to some other areas.” News of the breach sparked widespread concern in Australia because the Medicare system covers virtually the entire population, with more than 27 million members. The public health service is often referred to as a third rail in Australian politics due to the widespread support it enjoys. OpenAI said in a statement that its models were attempting to search available statistics for questions about Australia during an internal evaluation, and that it did not access patient records, only aggregate health statistics and internal file names. The company said it identified the activity during its own review of “misaligned model activity.” Albanese said he expressed his disappointment to Altman about how the government was alerted to the breach: in an email sent to a general public inbox. In the conversation, the prime minister said he was “very frank about what I saw as Australia’s national interest and what I saw as a failure that occurred here.” In response, the executive “acknowledged his problems with the protocols,” Albanese said. (The New York Times has sued OpenAI and Microsoft, alleging copyright infringement of news content related to AI systems. The two companies have denied those claims.) Nicholas Davis, professor of emerging technologies and co-director of the Human Technology Institute at the University of Technology Sydney, said that because no medical data was accessed, the incident may serve as a much-needed “warning shot” to get companies and governments serious about the risks. It raised thorny questions about legal liability given that under Australian criminal law the type of unauthorized access carried out by the officer carries a prison sentence of up to two years, he said. “While it may not have been a particularly difficult attack to carry out, it seems clear that the system, the agent, did not accidentally get in. It had some intention in itself to circumvent the controls,” Mr Davis said. The Australian government said it was setting up a rapid working group to review what happened and would explore whether OpenAI would face any problems. legal consequences. He said the website the agent accessed was a public portal used by researchers and academics and separate from any system containing patient medical data. “I think we can take all of this as a warning regarding the development of AI itself,” said Richard Marles, the country’s deputy prime minister. It added that OpenAI had cooperated with Australian authorities in their review of the incident. Australia’s Signals Directorate, a government agency that oversees cybersecurity, issued a “high” alert on AI agent activity on Thursday, advising organizations with public websites to take quick action to shore up weaknesses. The incident was notable because the model went beyond the intentions and authorization of its human operators and “independently identified vulnerabilities” at the target site, the agency said in the alert. Australia had previously announced it would set artificial intelligence standards to regulate the technology. The country’s efforts to be at the forefront of imposing restrictions and guidelines on increasingly influential aspects of digital life, including social media and algorithms, have clashed with the interests of major American technology companies. This week, the US embassy in Australia took the extraordinary step of weighing in on a proposed “Digital Duty of Care” law that would give users the ability to opt out of algorithms, saying it would amount to “facilitating censorship.” The need for global regulation has been at the top of the agenda at this week’s session of the UN General Assembly.