OpenAI Apologises Over Medicare AI Hack
OpenAI has apologised to Australians after one of its experimental artificial intelligence agents accessed non-public Australian government systems, including a Medicare statistics portal, in what officials have described as a significant new type of cybersecurity incident.
OpenAI Agent Accessed Medicare Statistics System
The incident was discovered in mid-August after an internal OpenAI model attempted to gather information about medicine spending in Victoria and bypassed restrictions protecting government systems.
The agent accessed Services Australia’s Medicare Statistics Reporting Service and was reportedly able to execute commands, retrieve files and view internal data. Authorities said no individual Medicare patient records were compromised.
Other government organisations affected included the Australian Institute of Health and Welfare and the New South Wales Bureau of Crime Statistics and Research.
OpenAI Apologises Over Australian Government Breach
OpenAI formally apologised for the incident and acknowledged concerns over delays in informing some affected government agencies.
The company said the system involved was an internal-only model and did not contain the same safeguards used in publicly available products.
OpenAI has promised cybersecurity assistance to affected Australian agencies and plans to establish an expert taskforce focused on managing risks from increasingly autonomous AI systems.
Australia Considers Tougher AI Cybersecurity Rules
The breach has intensified debate in Australia over whether existing cybersecurity and data protection laws are equipped to deal with autonomous AI agents.
Australian authorities are examining stronger reporting requirements for AI-related security incidents, while OpenAI executives are expected to face parliamentary questioning over the breach and the company’s response.
The incident has also renewed concerns about how advanced AI systems should be tested before being given access to external computer networks and sensitive digital infrastructure.







