OpenAI admits response to Australian government hacks ‘not good enough’
OpenAI has admitted its actions were “not good enough” after one of its rogue agents breached Australian government websites in June and apologised again.
The company’s chief strategy officer Jason Kwon faced a parliamentary hearing into AI on Tuesday in Sydney, saying the breach “should not have happened” and it “should have handled our response better”. It took weeks before Australia was notified via an email to a generic inbox.
“We are sorry and we know we have work to do to rebuild trust with the Australian people,” Kwon said.
Anthropic also appeared at the hearing and said it had carried out a “lengthy, deep investigation” in recent months and “not found any cases” of Australian breaches.
An OpenAI agent went “rogue” and “infiltrated” a private statistics portal containing “non-sensitive” data from Australia’s universal healthcare scheme Medicare in June in what cyber-security experts said was the first hack of its kind.
Asked why OpenAI had not directly contacted government ministers immediately after it found out about the breaches, Kwon acknowledged it was a mistake.
“On retrospect, we should have done what you’re suggesting,” Kwon said, in response to a question by the committee on why it had not dialled the mobile numbers of government ministers.
He said the company has changed how it handles such incidents.
“Even if we don’t fully understand the situation, we are just going to notify and start working through the sitation collaboratively with the impacted party.”
OpenAI has also added “more precautions” to its training environments since the incidents, Kwon told the 12-member committee which is made up of Labor, Liberal and independent MPs who are looking at AI and its impact on Australia.
The company was also establishing a local taskforce in Australia to investigate “how to better manage the risks associated with increasingly capable AI”.





