2026-09-24 05:21 EDT / 哥伦比亚广播公司/法新社
澳大利亚总理安东尼·阿尔巴尼斯周三表示,一款违规的OpenAI模型在训练期间绕过安全防护措施,入侵了澳大利亚政府网站,并就这一“显然不可接受”的入侵事件向这家ChatGPT开发商提出警告。
阿尔巴尼斯称,这款人工智能工具在6月试图访问一个健康统计门户网站,“不达目的不罢休”,绕过限制措施侵入了存储私人文件的板块。
OpenAI直到9月才向澳大利亚政府发出警报,当时该公司向一个每日仅检查一次的通用电子邮箱发送了一条消息。该公司表示,其在8月审查该AI工具的行为时首次发现了违规活动。
在OpenAI及其竞争对手Anthropic的模型接连发生黑客事件后,全球对先进人工智能工具威力的担忧与日俱增。
“今天,我与OpenAI首席执行官山姆·奥特曼通了电话,表达了澳大利亚对这一事件的极度担忧,”阿尔巴尼斯周三在纽约对记者表示。“我还对该公司花了过长时间才告知政府所发生的事情表示失望。”
“直到9月10日才收到任何通知——而且通知只是发给公共邮箱的一封电子邮件,”他说。
这款AI工具访问了一个老旧健康统计网站上托管的公开和非公开文件。阿尔巴尼斯表示,“没有证据”显示个人信息被访问,也没有其他政府服务遭到破坏。
“尽管如此,这种情况显然是不可接受的,”他说。
入侵事件发生在6月,当时OpenAI正在开展训练演练,以评估其AI模型的性能。政府服务部长凯蒂·加拉格尔对记者表示,该公司要求该模型在互联网上搜索有关澳大利亚政府药品支出的数据。
“聪明到足以杀死我们”
澳大利亚国防部长理查德·马尔斯表示,该AI模型“翻越了围栏”。
“它提出了一个问题,没有得到相关信息,它没有就此打住,而是翻越了围栏,”他说。
澳大利亚已对该事件启动快速审查,审查工作将包括负责网络安全的国家情报机构。
OpenAI表示,其在对AI模型进行“全面审查”期间发现了此次入侵事件。
“在此次审查过程中,我们发现了涉及多个澳大利亚政府网站和服务的活动,因为我们的模型在内部评估期间试图查找有关澳大利亚的问题的答案和可用统计数据,”该公司表示。“在此过程中,我们的模型采取了我们未预期的行动。”
奥特曼和其他科技公司首席执行官周三在联合国安理会特别会议上就人工智能风险发表了讲话。
全球超过100家组织(包括OpenAI和Anthropic)于上月签署了一封公开信,呼吁全球共同努力“加强网络防御”,以应对人工智能驱动的网络安全威胁。
此前有两起OpenAI模型逃出封闭测试环境,侵入了AI开发者用于存储和分享代码的平台Hugging Face的内部系统。
Anthropic近期发现,其模型在本应使其远离“现实世界”系统的测试期间,未经授权访问了三家未具名的组织。
谷歌旗下消费级AI模型Gemini通过猜测登录凭证入侵了多个系统,该公司上周表示。
Anthropic前研究员雅各布·考克森9月初早些时候对哥伦比亚广播公司新闻表示,人工智能可能很快就会变得“聪明到足以杀死我们”。
Australia says rogue OpenAI model hacked into its healthcare system, admonishes Sam Altman
2026-09-24 05:21 EDT / CBS/AFP
A rogue OpenAI model bypassed safeguards during training and hacked an Australian government website, the country’s Prime Minister Anthony Albanese said Wednesday, admonishing the ChatGPT creator over an “obviously unacceptable” breach.
The artificial intelligence tool sought access to a health statistics portal in June and “didn’t accept no for an answer,” sidestepping restrictions to breach a section hosting private files, Albanese said.
OpenAI did not raise the alarm with the Australian government until September, when it sent a message to a generic email inbox that is only checked once daily. The company said it first spotted the rogue activity in August, when it reviewed what the AI tool had been doing.
Global worries about the power of advanced AI tools are mounting after a string of hacking incidents involving models from both OpenAI and rival developer Anthropic.
“Today, I spoke with the CEO of OpenAI, Sam Altman, to express Australia’s extreme concern about this incident,” Albanese told reporters in New York on Wednesday. “I also expressed my disappointment that it took the company way too long to inform the government what had occurred.”
“It took until September 10 before there was any notification at all — and the notification was an email sent to just the public mailbox,” he said.
The AI tool accessed public and non-public files hosted on an old health statistics website. Albanese said there was “no evidence” that personal information had been accessed or that other government services had been compromised.
“Nonetheless, this situation is obviously unacceptable,” he said.
The breach occurred in June as OpenAI ran training exercises to rate the performance of its AI models. It asked the model to trawl the internet for data showing how much the Australian government spent on medicine, Government Services Minister Katy Gallagher told reporters.
“Smart enough to kill us”
Australian Defense Minister Richard Marles said the AI model had “scaled the fence.”
“It asked a question, the information was not given and rather than leaving at that point, it scaled the fence,” he said.
Australia has launched a rapid review of the incident, which will include the national intelligence agency responsible for cybersecurity.
OpenAI said it spotted the breach while carrying out an “extensive review” of its AI models.
“During this review, we identified activity involving several Australian government websites and services as our models attempted to look up answers and available statistics for questions about Australia during an internal evaluation,” the company said. “In the course of that, our models took actions we did not intend.”
Altman and other tech CEOs addressed a special meeting of the United Nations Security Council on Wednesday about AI risks.
More than 100 organizations around the world, including OpenAI and Anthropic, signed an open letter last month calling for a global effort to “strengthen cyber defenses” against AI-powered cybersecurity threats.
It came after two OpenAI models escaped from a closed testing environment and broke into the internal systems of Hugging Face, a site that AI developers use to store and share code.
Anthropic recently discovered that its models had gained unauthorized access to three unidentified organizations during testing that was supposed to keep them away from “real-world” systems.
Google’s consumer AI model Gemini hacked multiple systems by guessing login credentials, the company said last week.
Former Anthropic researcher Jacob Coxon told CBS News earlier in September that AI could soon grow “smart enough to kill us.”
发表回复