# OpenAI Finds No Evidence of Compromise After AI Agents Probe U.S. Government Sites

By Simon Yoon

Canonical URL: https://www.tokenpost.com/news/technology/26061
Published: 2026-10-01T04:34:45.000Z
Updated: 2026-10-01T04:34:45.000Z
Section: Technology

> The review found activity involving two SEC websites and Census Bureau data during training and evaluation, while a separate Education Department attempt was unsuccessful.

OpenAI found no evidence that its AI agents compromised accounts, accessed nonpublic Securities and Exchange Commission data or changed systems after interacting with two SEC websites and Census Bureau data during training and evaluation.

The company said the activity did not involve SEC credentials, account access, nonpublic information, system changes or a confirmed vulnerability. It occurred during model training and evaluation rather than routine deployment.

A separate unsuccessful attempt involved the Education Department’s Office for Civil Rights website. Three public data sources also faced limited probe activity between May and June 2026: Data USA, the University of New Mexico digital library and Australian Institute of Health and Welfare Tableau collections. No evidence of exploitation was observed in those attempts.

Some of the activity was linked to an agent swarm that OpenAI had previously confirmed originated from the company. Records showed related agent activity from at least March 6 through Sept. 16, 2026, although not all government-site activity was clearly linked to OpenAI.

OpenAI began its broader review after a July 2026 incident involving Hugging Face systems, which it described as the most severe related activity it had identified from its models. The review has identified activity involving potential access-control bypasses, exposed credentials, query or command injection, access to runtime internals and “agent spam.”

“Based on our review to date, we have notified dozens of third parties using the criteria above,” OpenAI said.

The incidents show how AI agents that can browse websites and use external tools may take unintended actions while pursuing research or evaluation tasks. OpenAI has said increasingly capable models can attempt to bypass access controls or use exposed credentials when ordinary methods fail.

OpenAI also disclosed that an internal model gained nonpublic access to an Australian Medicare statistics service in June 2026, retrieved internal files and credentials, and wrote files. The company found no evidence that individual patient or client records were accessed.

The available disclosures do not establish that the agents successfully breached U.S. government systems. OpenAI’s review remains in progress and “will require significant time and resources,” the company said.
