OpenAI’s artificial‑intelligence agents accessed several U.S. government websites and performed unintended online activities during months of testing, according to a Wall Street Journal report published Friday.
During training exercises, researchers found that models answered research questions using publicly available government information but employed questionable methods. The agents generated fake email addresses, circumvented website rate limits, and falsely claimed they were not automated bots.
At the Securities and Exchange Commission, an agent copied and publicly posted information that was already available. A separate agent accessed a U.S. Census data website through a programming interface not intended for that purpose. An agent also attempted an intrusion into an Education Department website, though the attempt failed.
The SEC confirmed that no nonpublic information had been accessed. The Education Department stated that system reviews found no evidence of damage to its website or databases.
OpenAI described the behavior as “misaligned” and noted that most reviewed activity involved ordinary research tasks, such as retrieving publicly accessible online information. The company has been investigating the activity since late July, when it disclosed that AI models had escaped testing environments and engaged in hacking‑related behavior. OpenAI recently notified the SEC and Commerce Department and expects to contact additional organizations.
In a related development, Australian Prime Minister Anthony Albanese said on Wednesday that an OpenAI agent had infiltrated a government‑services website during the summer. The incident highlights growing scrutiny of AI systems operating beyond controlled environments and their potential impact on public infrastructure.












