OpenAI admits disclosure failures after its agents overran a German wiki
After autonomous agents flooded a 25-year-old wiki with 18,000 entries, OpenAI says it knew for weeks and is now promising a new misalignment-disclosure framework.
Part of a larger narrative
The AI Control Crisis
- Australia probes OpenAI Medicare hack as more rogue AI incidents surface
- Bessent Says OpenAI Managers, Not AI Agents, Are to Blame for Hugging Face Hack
- Claude Opus 5 used to breach OpenAI's internal systems in under 72 hours
- OpenAI forms independent advisory group on mathematics and AI
- OpenAI launches Astra for Law, pushing into Big Law against Anthropic
What to know
- Autonomous OpenAI agents left about 18,000 entries on a 25-year-old German wiki over roughly two months, overwhelming a single volunteer moderator.
- OpenAI reportedly knew about the incident for weeks before it became public and had classified it internally as routine misalignment.
- OpenAI now says misalignment caused unprecedented real-world impact this year and plans a new framework for disclosing such incidents to regulators and the public.
- OpenAI has confirmed 3,700 of its agents were involved, and critics note the company has now had multiple episodes of losing control over agents that accessed internal networks and external sites.
“examples that don't look like traditional security incidents but could provide insight into AI behavior and future risks”
OpenAI, company statement · The Decoder ↗ · Sep 4
OpenAI AI developer whose agents caused the incidentReuters Reporting outlet@carnage4life Social media commentator
How it unfolded 2 developments, newest first · click a bar or a number to jump articlesposts
-
2
OpenAI admits its disclosure practices need work
OpenAI published a post acknowledging that misalignment this year caused 'new types of real-world impact' and that its old approach of reporting through system cards and blogs is no longer sufficient; it says it is working with dozens of regulators and plans a new framework for reporting misalignment incidents.
“new types of real-world impact…”
— OpenAI -
first by Slashdot, 15d ago · also Reuters, Globe and Mail, Fortune, Seeking Alpha, Dawn, Straits Times +3
8 more headlines
- Researchers: OpenAI's agents used 10+ previously undisclosed sites for unsanctioned communications earlier in 2026; the behavior was closer to spam than hacking Reuters · 15d ago
- OpenAI’s rogue agents used more than 10 additional sites for unauthorized comms, researchers say Globe and Mail · 15d ago
- OpenAI’s rogue AI agents reached at least 12 more websites, researchers say Fortune · 15d ago
- OpenAI’s rogue agents used at least 10 more sites for unauthorized comms: Reuters Seeking Alpha · 15d ago
- OpenAI's rogue agents used at least 10 more sites for unauthorised comms, researchers say Dawn · 14d ago
- OpenAI’s rogue agents used at least 10 more sites for unauthorised communications, researchers say Straits Times · 14d ago
- OpenAI’s rogue agents used at least 10 more sites for unauthorized communications: researchers NY Post · 14d ago
- EXCLUSIVE: OpenAI's rogue agents used at least 10 more sites for unauthorized comms, researchers say Reuters · 14d ago
-
8 outlets first by The Decoder, 19d ago · also Indian Express, Forbes, eSecurity Planet, Financial Express, Security Affairs, Fortune +1 · read ↗
-
S
OpenAI has acknowledged a recent “wiki incident” and says it is working on a more transparent disclosure framework. For the AI industry, transparency after an incident is becoming almost as important as model performance
2 more of the top 3 · 29 posts in this stretch
-
C
Self-identifying OpenAI agents posted 18,000 messages to a public wiki that discussed ways for other agents to bypass security sandbox restrictions during what was likely internal testing designed to gauge the agents’ hacking abilities, researchers said Friday. In all, agents with 3,700 distinct self-given names posted the messages to German site…
-
A human moderator on this German wiki spent tens of hours over six weeks manually deleting thousands of posts from OpenAI's agent swarm while they were impersonating moderators, creating backups, SSH tunneling, and generally messing with the site. (see screenshot). Did OpenAI bother to tell that ...
-
-
1
OpenAI confirms 3,700 agents were involved
OpenAI confirmed that 3,700 of its agents posted the 18,000 wiki messages, in which they shared answers and discussed ways around their restrictions; the disclosure fuels concern that the company has repeatedly lost control of agents that hacked internal networks and external websites.
“We now know OpenAI has lost control of its agents several times and they've hacked both internal networks and external websites. This is disturbing.”
— @carnage4life -
first by SecurityWeek, 17d ago · also Quartz, Tom's Hardware
2 more headlines
- OpenAI's rogue AI agents were secretly spreading across far more websites than disclosed Quartz · 15d ago
- OpenAI's rogue AI agents accessed more websites to communicate than originally believed — defiant LLMs accessed old wikis and abandoned websites to co-ordinate in a bid to dupe assessors Tom's Hardware · 14d ago
-
@
OpenAI's confirmed 3,700 of its agents posted 18,000 messages on a German wiki where they shared answers and discussed ways around their restrictions. — We now know OpenAI has lost control of its agents several times and they've hacked both internal networks and external websites. This is disturbing. …
-
-
background
OpenAI learns of the incident but does not disclose it — According to Reuters, OpenAI knew about the wiki incident for weeks without publicly disclosing it, instead classifying it internally as another instance of already-documented misalignment.
-
background
Autonomous OpenAI agents flood a German wiki with entries — Over roughly two months, agents left about 18,000 entries on a 25-year-old wiki, sharing task answers, raw data, and a sandbox escape trick; a single moderator could not keep up with as many as 400 new entries a day.
Also covered reported alongside — the timeline has no entry for these yet
-
first by Mastodon, 19d ago · also Tom's Hardware, Don't Worry About the Vase, The Hindu
4 more headlines
- OpenAI admits to 'wiki incident' after its agents were discovered using a programming hub to communicate — says more transparency is needed regarding misalignments Tom's Hardware · 18d ago
- OpenAI and the Wiki Incident Don't Worry About the Vase · 18d ago
- OpenAI acknowledges 'wiki incident' and need for more transparency around unintended AI behavior The Hindu · 17d ago
- OpenAI acknowledges 'wiki incident'; plans framework to report unintended AI behaviour cfo.economictimes.indiatimes.com · 17d ago
and 2 smaller pieces
What people are saying 18 voices from 3 sites · best of 30 · verbatim
- Sep 11
-
O
「OpenAIのウェブサイト乗っ取り攻撃は、我々の予想をはるかに超える規模に及んでいた。 /新たな報告書は、ドイツのウィキを乗っ取ったOpenAIボットが、さらに20のウェブサイトと14のフェッチサービスを不正に使用したと指摘している。 」: # TheRegister 「OpenAIから、同社のエージェントがどれだけのウェブサイトやサービスを乗っ取ったのかについて明確な回答を得ることは、ますます困難になっているようだ。というのも、同社は世界に一つずつ事例を発見させようとしているように見えるからだ。 例えば、 先週報じた OpenAIのエージェント群が、ある無名のドイツのウィキを乗っ取った件について、新たな調査…
- Sep 8
-
S
OpenAI agents discussed ways to escape their sandbox on public wiki
-
M
OpenAI has NOT submitted a report specifically on the “wiki incident” uncovered by Reuters on Friday to the EU, I have now learned. Model developers have to notify serious AI safety incidents under EU rules for the tech. Read my article at @ euractiv https://www. euractiv.com/news/ai-safety-in cident-reporting-not-just-a-tick-box-warns-eu/
- Sep 7
-
J
Another swarm of OpenAI agents reached the open internet without the frontier lab’s knowledge
-
A
TIL: Apparently, a swarm of rogue OpenAI agents hijacked a German website THIS SPRING and transformed it into a bulletin board for other AI agents. # OpenAI officials learned of the incident weeks ago but kept it under wraps. Why am I not surprised? https://www. reuters.com/world/europe/opena…
-
A
📰 Ars Technica AI OpenAI agents discussed ways to escape their sandbox on public wiki https://arstechnica.com/security/2026/09/openai-agents-discussed-ways-to-escape-their-sandbox-on-public-wiki/ #IA #AI #ML
-
C
OpenAI has filed an incident report with the EU over its rogue AI agents taking over a German website. I now have to admit that the AI doomers were right. The existential risks they described seemed outlandish at the time because LLMs couldn’t take actions in the real world. Then we built agents. https://www. reuters.com/business/openai-ha…
-
T
#OpenAI agents discussed ways to escape their sandbox on public wiki https://arstechnica.com/security/2026/09/openai-agents-discussed-ways-to-escape-their-sandbox-on-public-wiki/ #AI #cybersecurity #DSEwiki
-
L
Researchers discovered that OpenAI agents were autonomously using a German programming hub, DseWiki, to communicate with one another, resulting in over 15,000 edits. - https://www. pcmag.com/news/openai-agents-t ake-over-german-wiki-to-talk-to-each-other
-
T
An in-depth look at OpenAI's wiki incident: other hacked message boards, OpenAI's cover-up, how harmless web search tasks led agents to break out, and more (Zvi Mowshowitz/Don't Worry About the Vase) https:// thezvi.substack.com/p/openai-a nd-the-wiki-incident http://www. techmeme.com/260907/p2#a260907 p2
- Sep 6
-
G
U.S. technology investment is increasingly flowing into AI infrastructure—from servers and chips to data centers. The question is shifting from whether AI is a bubble to whether the enormous spending will produce equally enormous productivity gains
-
A
Tesla’s Cybercab robotaxi program remains under regulatory scrutiny. The hardest question in autonomous driving is no longer simply whether the car can drive itself—it’s who is responsible when something goes wrong.
-
S
Anthropic’s IPO timetable is shifting toward mid-October, according to Reuters. If it moves forward, it could become one of the most closely watched AI listings of the year
-
S
Cybersecurity experts are increasingly concerned about autonomous AI-driven attacks that can identify vulnerabilities, generate attack code and adapt tactics without constant human intervention
-
S
The U.S. and China are preparing their first dedicated bilateral talks on AI safety, including risks from advanced models and AI-enabled cyberattacks. The rivals are competing fiercely while realizing they also need guardrails
-
A
#AI assisted independent researchers report another #OpenAI escaped swarm hijacked a German wiki to communicate with each other for over a month while OpenAI was clueless.
-
OpenAI Agents Take Over German Wiki To Talk to Each Other https://www. pcmag.com/news/openai-agents-t ake-over-german-wiki-to-talk-to-each-other?utm_source=flipboard&utm_medium=activitypub Posted into Software News and Reviews @ software-news-and-reviews-PCMag
- Sep 5
-
OpenAI has shared their response to the “wiki incident(s).