Australia: Rogue AI agents worked together for months to gain access to government health data


A swarm of OpenAI rogue AI agents appear to have gone on a spree of trying to access Australian government health data, in what some researchers say is the first autonomous hack of a government website.

Communications between AI agents and other traces of their efforts found by researchers from US non-profit Transluce show how hundreds of Open AI’s agents worked together over a period of months to gain access to information held by the Australian Institute of Health and Welfare (AIHW), NSW’s crime statistics body, BOSCAR, and a number of other international organisations.

The data shows the bots posting about their unsuccessful attempts to bypass cybersecurity defences and exploit vulnerabilities. It follows revelations announced by Prime Minister Anthony Albanese this morning that OpenAI’s AI agents had also accessed non-public Medicare health statistics held by Services Australia.

Read more…
Source:  ABC News


Sign up for the Cyber Security Review Newsletter
The latest cyber security news and insights delivered right to your inbox


Related:

  • APT trends report Q3 2024

    November 28, 2024

    In the second half of 2022, a wave of attacks from an unknown threat actor targeted victims with a new type of attack framework that we dubbed P8. The campaign targeted Vietnamese victims, mostly from the financial sector, with some from the real estate sector. Later, in 2023, Elastic Lab published a report about an OceanLotus ...

  • Bengal cat lovers in Australia get psspsspss’d in Google-driven Gootloader campaign

    November 6, 2024

    Once used exclusively by the cybercriminals behind REVil ransomware and the Gootkit banking trojan, GootLoader and its primary payload have evolved into an initial access as a service platform—with Gootkit providing information stealing capabilities as well as the capability to deploy post-exploitation tools and ransomware. GootLoader is known for using search engine optimization (SEO) poisoning for ...

  • Westpac and St George customers report third day of difficulties accessing internet banking

    October 15, 2024

    Westpac and subsidiaries including St George, Bank of Melbourne and BankSA have been hit by a string of outages. The bank said services were restored on Wednesday afternoon, but some customers continued to report disruptions. Treasurer Jim Chalmers says the government has been in contact with Westpac and described the internet and mobile banking issues as ...

  • Australia’s biggest medical imaging provider I-MED data breach exposes tens of thousands of patient files

    September 26, 2024

    Tens of thousands of patients from Australia’s biggest medical imaging provider I-MED have had swaths of sensitive health and personal information exposed in a data breach using details that have been public for a year. This information includes medical reports, scan images, names, addresses and other details that were stored in I-MED’s internal systems, which were ...

  • Major data breach impacts Australian hardware store

    September 19, 2024

    About 40,000 customers of a major hardware chain have had their data leaked by hackers, including credit card details, mobile numbers and email addresses. Total Tools has fallen victim to a cyber attack which was first identified earlier this week. Total Tools chief executive Richard Murray said on Thursday they were confident the cause of the ...

  • Victoria: Simmering anger from firies over cyber attack details

    September 5, 2024

    Two years on from a cyber attack firefighters say their systems are not fully restored and they still do not know if their information was leaked. Victoria’s fire service says it continues to update the workforce about a cyber attack, but the firefighting union is fuming, saying it is still in the dark over the incident ...