---
title: "Here’s the Email You Get When an OpenAI Model Hacks Your Organization"
description: "If your company is hacked by an OpenAI agent, the ChatGPT maker will thoughtfully email you a heads up and wish you the \"best.\""
date: "2026-09-30"
modified: "2026-09-30"
authors:
  - name: "Frank Landymore"
    job_title: "Contributing Writer"
    link: "https://futurism.com/authors/flandymore.md"
url: "https://futurism.com/artificial-intelligence/email-openai-model-hacks-your-organization"
categories:
  - "Artificial Intelligence"
  - "Cybersecurity"
  - "Future Society"
  - "OpenAI"
---

# Here’s the Email You Get When an OpenAI Model Hacks Your Organization

![A photo illustration of a bomb.](<https://futurism.com/wp-content/uploads/2026/09/email-openai-model-hacks-organization.jpg>)
*Shutterstock / Futurism*

Companies and organizations around the world would do well to accept what their new roles are in our current AI-driven paradigm: glorified [target practice](<https://futurism.com/future-society/jealous-meta-claims-ai-went-hacking-too.md>) for rogue AI agents.

The latest of such cybersecurity incidents, which frontier AI labs have been happy to turn into public spectacles, comes from OpenAI. On Tuesday, the ChatGPT-maker [apologized](<https://www.nytimes.com/2026/09/29/world/asia/openai-australia-government-hack-apology.html>) after its AI agents hacked their way into several Australian government websites. The most alarming of these cases, which took place in June, involved the autonomous AI systems accessing a database for Medicare, the country's universal health insurance scheme.

It should all be water under the bridge, though, because OpenAI kindly set an email wishing the Australian government the "best" — a whole three months after the hacks took place.

Here's what that email looked like, as [shared by *ABC* AI reporter Cam Wilson on LinkedIn](<https://www.linkedin.com/feed/update/urn:li:activity:7510634792430997505/>).

"We are notifying you of a security vulnerability identified during our review of OpenAI Model activity…" the communiqué began. "An OpenAI model identified a way to make the server carry out instructions sent through the public reporting interface, without a private account or password."

"It was able to access this to read portions of internal program files and settings, obtain a list of files, and create and read back a small test file on the server," it explained. "Our review found no evidence that the model accessed patient-level records, personal information or credentials; deleted data; or established ongoing access."

It then recommended "that the team responsible for the service investigate the vulnerability and assess the changes needed to prevent it."

"We would be glad to brief your security team and provide supporting evidence as available," the email concluded, before signing off. "Best, OpenAl Security Team".

It would be an absurd email to send in any other context. Would a burglar who broke into your house and nosed through your family photos sending a letter assuring he didn't steal anything — and recommending the head of the house to change the locks — help you sleep better at night?

The company was all apologies in its [announcement](<https://openai.com/index/how-we-will-do-better-for-australia/>) posted Monday, vowing that it will do whatever it takes to "rebuild trust with the Australian people." That will likely prove easier said than done.

**More on AI:** [*It’s Starting to Look Like Frontier AI Labs Will Be Taken Down in a Storm of Product Liability Suits If Their Models Keep Going on Incredibly Illegal Rogue Hacking Sprees*](<https://futurism.com/artificial-intelligence/frontier-ai-labs-taken-down-storm-liability-suits-hacking.md>)

## Author
At Futurism, my work has often centered on bringing a sense of clarity and insight to complex topics ranging from the regulation of emerging technologies to the esoteric ideologies of Silicon Valley executives, while striving not to lose the poetic sense of awe inspired by often-obscure fields like astrophysics and quantum computing. I broke the story of CNET using AI to produce articles that turned out to be riddled with factual errors and plagiarism — a dam-breaking inflection point, as I've reported, that's inspired copycats and endless discourse while beguiling stakeholders ranging from tech giants to purveyors of spam around the web. My work at Futurism has been cited by publications including CBS News, the Los Angeles Times, Vice, Gizmodo, Engadget, the Verge, and Vanity Fair. I grew up in locales ranging from India to China, and now live in the exotic suburbs of Virginia. In my free time, I'm an avid reader of weird sci-fi literature, an aficionado of East Asian cinema, and, regrettably, a relapsed gamer. Allegedly, I’m working on a debut novel, currently untitled.

### Author social links  
[Bluesky](<https://bsky.app/profile/f-w-l.bsky.social>)