cross-posted from: https://lemmy.dbzer0.com/post/75932280

Prime Minister Anthony Albanese has revealed an AI agent hacked into an Australian Medicare data portal earlier this year.

Speaking in New York, Mr Albanese said the Open AI agent gained unauthorised access to the Medicare statistics reporting service portal administered by Services Australia.

The AI agent accessed both public and non-public files.

The agent was conducting research into public medical spending when it found a way to break through privacy protections.

Mr Albanese said it took three months for OpenAI to admit the breach, which he said was unacceptable.

“Today I spoke with the CEO of OpenAI, Sam Altman, to express Australia’s extreme concern about this incident,” he said.

"And I also expressed my disappointment that it took the company way too long to inform the government what had occurred.

“The nature of the way that the notification occurred as well was unacceptable.”

He said there was no evidence any individual personal information had been accessed, but an investigation aided by the Australian Signals Directorate was now underway.

  • Doomsider@lemmy.world
    link
    fedilink
    English
    arrow-up
    2
    ·
    4 hours ago

    These models are obviously unsecure and should be taken down until they can be properly secured. Fuck their profits, they don’t get to make money off of criminals acts and pretend they are not facilitating crimes.

    • wampus@lemmy.ca
      link
      fedilink
      English
      arrow-up
      2
      ·
      16 hours ago

      I’d guess that GCP, AWS, Azure have infrastructure in Australia and many other western nations, and the AI companies would use that as a proxy.

      You could potentially block those IP ranges. But then you’re also likely going to be blocking Windows updates, and basic Windows functionality. So you’d first have had to, idk, focus on sovereign tech chains / OS’s. Not to mention, the Aus government is likely hosted inside the sane cloud ecosystems that AI companies are using to launch their attacks from.

      • schipelblorp@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        3
        ·
        11 hours ago

        You could potentially block those IP ranges. But then you’re also likely going to be blocking Windows updates, and basic Windows functionality.

        Don’t threaten me with a good time.

  • calcopiritus@lemmy.world
    link
    fedilink
    English
    arrow-up
    20
    ·
    21 hours ago

    Why do they express disappointment?

    What they should express is criminal charges and an extradition request.

  • rowinxavier@lemmy.world
    link
    fedilink
    English
    arrow-up
    67
    ·
    1 day ago

    If I, and Australian citizen, had gained access in the same way I would be facing charges. Those charges would likely be under the Cybercrime Act of 2001.

    s.478.1(1) Criminal Code—unauthorised access to, or modification of, restricted data;

    That carries a maximum 2 year sentence and it clearly a significant threat to an individual.

    Will Sam Altman face this charge? No. The purpose of the AI in this situation is not to do the actual hacking. The purpose it to abrogate the blame, to shield the owners of it from legal repercussions. Altman and co can do whatever they want and shift the blame to the AI.

    “We didn’t fire missiles at those children, the AI made a mistake and identified them as hostile actors”

    “We didn’t deny your dead partner’s healthcare, the algorithm incorrectly labeled the procedure as unnecessary and due to the delay your partner died, but that wasn’t our fault, it was the algorithm.”

      • rowinxavier@lemmy.world
        link
        fedilink
        English
        arrow-up
        1
        ·
        2 hours ago

        I agree, you would have a hard time pushing for the intent part of a crime, however manslaughter does not require intent, nor do many other crimes, and discovery would being many documents to light which may show the level of intent or reckless disregard. Also, what is the difference between intent and callous disregard? If you know your actions will cause deaths and you do not act to prevent those deaths then are you not choosing those deaths? If there is a discussion documented where the possibility is raised and then disregarded it would show at least knowing disregard for the safety and wellbeing of others.

      • schipelblorp@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        6
        ·
        11 hours ago

        Intent not required. Training your AI on hacking databases, asking it to solve a problem, giving it unlimited compute, and then walking away for several days sounds like malign neglect.

      • lemmyvore@feddit.nl
        link
        fedilink
        English
        arrow-up
        5
        ·
        11 hours ago

        I’m pretty sure you can get still charged for criminal acts committed without intent.

        What you shouldn’t be able to do is go “oh lol whoopsie” and walk away free. Especially when you’re dealing with state actors.

        No matter how you frame this act, it’s bogus. If you have a dog and it gets into private property and causes damage, you’re responsible for it. Why not for your AI.

  • Embargo@lemmy.zip
    link
    fedilink
    English
    arrow-up
    94
    ·
    1 day ago

    Headline: U.S. government backed company issues a serious cyberattack on a foreign government and is absolutely slammed with a “frank” discussion.

    • kingofras@lemmy.world
      link
      fedilink
      English
      arrow-up
      8
      ·
      1 day ago

      Let’s not jump to any overly paniced conclusions. The (past his) prime minister is first considering whether the matter needs to be referred to the federal police. You know, because THEY have juristiction over Sam Altman.

  • MalReynolds@slrpnk.net
    link
    fedilink
    English
    arrow-up
    24
    ·
    edit-2
    1 day ago

    The scary thing to me is that it was claimed to be the ‘AI crawler’ that did the breach. Those fuckers have been driving up the cost of running every website, have zero respect for a robots.txt file and just keep hammering the internet in general.

    Now it appears they also have some sort of breaching capability, or the Medicare statistics site and others have a bad hole that allowed the crawler to walk its way in. I hope it’s the latter, bad as that is, because the former indicates they’re hooking up red team (hacking) agents to their fucking web crawler. Greedy, data hoovering, assholes.

    ETA: The Guardian article reports Albanese as saying

    the agent had accessed “public and non-public files within the portal” and, in order to do this, “engaged in writing files as well to the internal server”.

    which is not crawler behaviour, it’s definitely breaching.

    That should be straight up criminal behaviour, at the very least criminal negligence, probably significantly worse, whatever hacking for hire is in the targeted country. As is scarily becoming usual ‘an agent did it’ is being treated as a get out of jail free card, freeing them of responsibility. Those who control it need to be criminally accountable. Even if it is an OpenAI client (person) deliberately breaching their guardrails (Barbossa: “The code is more what you’d call ‘guidelines’ than actual rules.”), the company is an accomplice.

    • CapuccinoCoretto@lemmy.world
      link
      fedilink
      English
      arrow-up
      8
      ·
      22 hours ago

      Let’s not pretend the US isn’t a hostile nation. This was no accident. Information gathered is used to funnel intel to big money for sophisticated analysis used to drive privatization and corporate activity.

  • Obituarykidney@lemmy.world
    link
    fedilink
    English
    arrow-up
    15
    ·
    1 day ago

    Wow he’sdisappointed. They fucking accessed government medical data illegally. And he’s disappointed. Exactly the milqeutoast response I expected from this useless pm.

    Press some fucking charges. Fine them enough that they never do it again. Ban them and their product from the country. Fucking anything. Having a meeting with the guy and telling him to do better or pathetic. And exactly the reason I’ve never voted for Labor. And exactly the reason the racist cunts in one nation are gaining momentum even though they’re clearly not a viable party.

    • hitmyspot@aussie.zone
      link
      fedilink
      English
      arrow-up
      17
      ·
      1 day ago

      Yes, and both should be held responsible. The person or entity that instructed itz plus open ai for allowing its software to commit illegal acts with impunity.

      It’s completely ridiculous that these companies are becoming a serious social problem, while at the same time not being held to the standards that other companies would be if they did these acts without the use of ai.

      The agent did nothing. Software with ability to work independently gained access under instructions to get information. This is no different to telling an employee to get something in Coles and they steal it. Hold them both accountable.

    • sys110x@aussie.zone
      link
      fedilink
      English
      arrow-up
      12
      ·
      1 day ago

      OpenAI absolutely did something. This wasn’t a member of the public using ChatGPT, this was OpenAI employees training an OpenAI model(s).

      If you or I did this without permission in the name of research (with or without using an LLM), we’d be facing jail time.

      OpenAI accessed non-public aggregate health statistics and internal files from an old Australian government website that carried Medicare statistics.

      The prime minister said OpenAI was conducting research into public medical spending when it found a way to break through privacy protections.

      In a statement, an OpenAI spokesperson said the company was “conducting an extensive review of misaligned model activity” during training, and notifying third parties when there was a potential impact on their systems.

      “During this review, we identified activity involving several Australian government websites and services as our models attempted to look up answers, and available statistics for questions about Australia during an internal evaluation,” they said.

      "In the course of that, our models took actions we did not intend.

    • teslekova@lemmy.ml
      link
      fedilink
      English
      arrow-up
      1
      ·
      17 hours ago

      Saying OpenAI did nothing is strange, since this was a research project run by OpenAI.