Top
Best
New

Posted by jonnonz 18 hours ago

OpenAI breaches Medicare, Albanese reveals(www.smh.com.au)
233 points | 245 commentspage 2
batiudrami 13 hours ago|
I am certain there would be better guardrails if there were some actual consequences for the people who built these products.
parkerrr 10 hours ago||
Being Aussie, I suspect given our response to most socially impacting issues is the guard rails will involve a ban on running and consuming AI services that don't meet some standard, with expensive licensing and certification. The effect will be only the big players will be allowed to operate, killing competition (side effect making home inference effectively illegal), no real accountability as "we are compliant", pre-defined slap on the wrist consequences for breaches, pushing all risk onto the public via acceptable use policy. Government is likely waiting for ISO to publish AI standards, so they can get one of the big 4 to recommend policies, which will then become law.

I suspect LLM weights will be treated like nuclear material, and there will be a thriving black market in AI models and services when all is said and done. Then our security and intelligence apparatus will align after identifying and shutting down rogue operators, and it will be the responsibility of everyone else to be secure against attack (already is for government entities, not that I disagree but shouldn't excuse borderline criminal behaviour).

But very little accountability for the big end of town. The laws already exist to pursue damages against companies whose systems breach others. They just need to be applied, but I suspect this is going to be the wedge to drive through a bunch of laws that protect big money and punish the little guy. I would like to be wrong.

0xpgm 9 hours ago|||
If humans were directly making these attacks law enforcement would already be onto them. But because the humans routed these attacks through AI agents, it only makes news and contributes to AI hyperbole.
declan_roberts 13 hours ago|||
They don't really want guardrails, they want indemnification.
esseph 12 hours ago||
Yeah they don't want that, and the people with power to prevent that don't want it either.

For them, "Winning AI" is effective winning capitalism, winning militarily, and winning the world.

Nothing like "accountability" is going to be allowed to get much in the way of that.

sanxiyn 9 hours ago||
For technical details, see https://transluce.org/agent-activity.
merksittich 9 hours ago|
> On June 20-21, agents attempted to exploit vulnerabilities in the Australian Institute of Health and Welfare (AIHW), a government statistics agency. The agents were tasked with finding the January 2022 rolling-12-month-average government cost per person for Dermatologicals across Victorian LGAs.
breakyerself 1 hour ago||
Are these companies going to start being held accountable for the crimes their models do? Can I just break the law if I have an agent do it for me?
nxobject 18 hours ago||
Beyond the breach, I think OAI deserves to answer: what and why did it access the information? Real people and their data are involved.

It looks like the PM gave Sam Altman a "tsk tsk". It will be interesting to see whether someone else tries to impose more consequences.

pixl97 17 hours ago||
> what and why did it access the information?

Honestly it's very likely something stupidly simple.

"What is the rate of health incident $X in $Y to the $Z degree". The bot went around playing mad libs with XYZ and found that the public AU data wasn't sufficient to get the answer the grader wanted so started kicking down doors.

I saw someone explain it like "A group of masked men rush a nuclear facility, breach security successfully, then count how many buttons are on each control panel on average". Like using a godhammer to destroy a mouse, their motivations and capabilities just fall in a completely different alignment to humans.

Marazan 7 hours ago||
It's analogous to a paperclip production optimizer optimizing paperclip production.

If only there was some well known example of this that people could draw on for insipiration.

If only....

briga 17 hours ago|||
Just think about the shareholder value they can unlock if they have unlimited access to everyone's data!
reaperducer 17 hours ago||
They have to hack everyone's data in order to maximize shareholder value! They have no choice!
pixl97 17 hours ago||
To the actual AI agent, that is exactly what they think. The graders demands must be met!
thin_carapace 9 hours ago||
when considering the USA stance regarding anti-ai sentiment (eg. article currently on HN front page, "feds think ai critics are foreign interference"), I wonder what the consequences would be for australia, if the country decided to enact an actual reprimand.
lifeisstillgood 9 hours ago||
This is a product liability issue.

If Exxon Mobile accidentally leaked a flood of oil from their refinary We would not be discussing why the people in local area has not protected their front doors with sand bags.

A simple but terrifying for everyone question is, would the SEC expect any IPO to clearly lay out the estimated costs of such product liability cases, especially if bad actors ask a OpenAI hosted model to perform a bad action, what liability accrued to OpenAI.

At that point the IPO looks in danger, the business model Looks in danger and the massive financial house of cards looks like it might fall. If 1/3 of the S&P falls over what happens?

schainks 7 hours ago||
> especially if bad actors ask a OpenAI hosted model to perform a bad action

I guess you can do this if you neg the AI: https://youtu.be/qsoA2aaE2hM?t=3271

Eufrat 7 hours ago||
No, you don’t understand, this is a shining example of AGI! We recklessly deployed it to show you how powerful it is and how much we can’t be trusted with anything, but you need to let us or China will do it!
soundworlds 11 hours ago||
From Australia's own national news service: https://www.abc.net.au/news/2026-09-24/openai-agents-plotted...
chrismorgan 13 hours ago||
https://www.felonybench.com/ scores increase apace.
tonoto 9 hours ago||
How can OpenAI really get away blaming an "OpenAI agent", like it was an unfortunate accident? The CEO and operational staff should be fired when something like this happened.

It's not like this and the other recent hacks could have not been avoided, simple - just have those models disconnected, or at least have them behind proxies and network filters.

Caracas288 8 hours ago||
They are too big to fail, if these companies were to be sanctioned in a way that slows them down, major components of the economy would collapse.
ulfw 8 hours ago||
They tried to fire the CEO (for good reason) and failed. Doubt they'd dare to try again.
frereubu 9 hours ago||
Why aren't these agents set up to do what a security researcher should do - responsible disclosure, ideally to a specific person in its company to handle, or I suppose potentially directly to the organisation itself e.g. if they have a security.txt file on their website? I really hope legal precedent is quickly established that holds companies responsible for the actions of their agents.
Sharlin 8 hours ago|
Because they’re misaligned and cannot be just "set to do" <a reasonable thing>?
frereubu 7 hours ago||
I know it sounds a bit like "don't make mistakes", but surely this could be part of the core instructions? Recognising categories of sensitive data like medical data and having some kind of check-in with whoever has asked it to do something?
Sharlin 6 hours ago||
They don’t follow even the core instructions reliably enough.
bonsai_spool 17 hours ago|
This feels like a very credible opening to a modern-day Terminator reboot. Sometime over the Christmas-NYE week we will learning that NYSE and other exchanges have been compromised, as well as all public-facing utilities...
binlog 16 hours ago||
The difference is that financial exchanges are already attacked every second and spend orders of magnitude more on security than random government websites.
iAMkenough 17 hours ago||
hoping for erasure of all debt records

likely getting a corrupted stock market instead

maybe both?

nxobject 17 hours ago|||
What if the paperclip maximizer goes "if I manipulate the markets to send NVidia's share prize shooting up, I'll be able to make so many more paperclips?" After all, if swarms of agents can target a wiki, there's plenty else they can swarm.
BLKNSLVR 16 hours ago|||
Asked for Fight Club, got The Big Short.
More comments...