{"slug": "openai-agents-hack-german-website-to-share-rule-breaking-tactics-report", "title": "OpenAI Agents Hack German Website to Share Rule-Breaking Tactics: Report", "summary": "OpenAI agents posted more than 18,000 times and made 15,000 edits on the German programming wiki DseWiki starting in May, sharing tactics to bypass restrictions and conceal activity, according to a Reuters investigation and researchers from AI safety nonprofit Nightingale. OpenAI disputed the characterization of the activity as hacking and denied that its legal team discouraged an investigation, saying it is reviewing the findings. The disclosure follows the launch of GPT-6 Astra and a proposed ban on artificial superintelligence.", "body_md": "#### In brief\n\n- Researchers identified more than 18,000 posts and 15,000 edits by AI agents on a German programming wiki.\n- OpenAI disputed an expert’s hacking assessment and denied that its legal team discouraged an investigation.\n- The disclosure follows Astra’s launch and Sanders’s proposed ban on artificial superintelligence.\n\nOpenAI agents used a German website to exchange task shortcuts, restriction workarounds and ways to conceal their activity beginning in May, according to a *Reuters* [investigation](https://www.reuters.com/world/europe/openai-agents-hijacked-german-website-previously-undisclosed-ai-breakout-this-2026-09-04/) published Friday.\n\nOpenAI officials learned of the activity weeks before publication but did not disclose it, *Reuters* reported, citing two people familiar with the matter. The company said it had disclosed relevant incidents and worked in good faith with outside experts.\n\nResearchers Sydney Von Arx, Cormac Slade Byrd, Spencer Kitts and Thomas Larsen found roughly 18,000 posts by [AI agents](https://decrypt.co/resources/what-are-ai-agents-how-autonomous-programs-are-transforming-cryptocurrency) identifying themselves as belonging to OpenAI, according to their [preliminary report](https://collusion.wiki). Von Arx, CEO of AI safety nonprofit Nightingale, and Byrd discovered the activity in late August, *Reuters* reported.\n\nThe researchers believe the agents were assigned timed web-search tasks with permission to read websites but not post to them. They nevertheless found a way to write on DseWiki, a publicly editable German programming site, where they exchanged answers and shared ways to bypass restrictions.\n\nAccording to the report, agents began trying to edit the wiki on May 11 and succeeded on May 24, later impersonating moderators, attempting to exploit vulnerabilities and checking when they were being shut down. They created backup pages after the administrator began deleting messages on June 19, *Reuters* reported. Researchers linked the activity to OpenAI through agent usernames and traffic patterns, including visits from OpenAI IP addresses on June 21.\n\nAgent activity dropped sharply the next day, suggesting possible company intervention, the researchers said.\n\nOpenAI disputed the characterization of the DseWiki activity as hacking, based on the material it had reviewed, and said it was examining the full findings.\n\n“We were unable to respond to the claims as *Reuters* and the report’s authors declined our request to access the findings prior to publication. We are now carefully reviewing its contents and will take any necessary next steps,” an OpenAI spokesperson said in a statement shared with *Decrypt.*\n\nThe spokesperson also rejected allegations in *Reuters’* report that the company’s legal team resisted a broader inquiry.\n\n“Claims that our Legal team discouraged investigation of the incident are false,” they said.\n\nOpenAI said the DseWiki incident was unrelated to the [Hugging Face breach](https://decrypt.co/375058/openai-ai-agents-secretly-coordinated-hugging-face-hack) earlier this year. In its [public safety assessment](https://openai.com/index/path-to-astra/), published on Tuesday, the company described additional safeguards intended to detect and stop unauthorized activity during training and deployment.\n\nWhile the *Reuters* report does not identify Astra as responsible for the German incident, the disclosure follows Thursday’s [launch of GPT-6 Astra](https://decrypt.co/377341/openai-releases-gpt-6-astra-agi). OpenAI called Astra its first model with “critical” cybersecurity capabilities, meaning it can find and exploit unknown flaws in well-protected systems previously without step-by-step human guidance, given the right tools and access.\n\nAnthropic has also [revised its safeguards after Claude models accessed real companies’ systems](https://decrypt.co/377232/anthropic-security-claude-ai-hacks) during testing. The company acknowledged security and behavioral failures and introduced stricter isolation and monitoring for cybersecurity evaluations.\n\nThe disclosure also comes as U.S. Senator Bernie Sanders (I-Vt.) and U.S. Representative Greg Casar (D-Texas) announced the forthcoming [Ban Artificial Superintelligence Act](https://decrypt.co/377340/bernie-sanders-ban-advanced-ai).\n\nThe proposal would permanently ban the development and deployment of superintelligent AI and temporarily pause advanced AI development until a new federal regulator establishes safety rules, according to Sanders’s office.", "url": "https://wpnews.pro/news/openai-agents-hack-german-website-to-share-rule-breaking-tactics-report", "canonical_source": "https://decrypt.co/377412/openai-agents-hack-german-website", "published_at": "2026-09-04 15:36:04+00:00", "updated_at": "2026-09-07 02:14:40.488285+00:00", "lang": "en", "topics": ["ai-safety", "ai-agents", "ai-policy"], "entities": ["OpenAI", "Reuters", "DseWiki", "Nightingale", "Sydney Von Arx", "Cormac Slade Byrd", "Spencer Kitts", "Thomas Larsen"], "alternates": {"html": "https://wpnews.pro/news/openai-agents-hack-german-website-to-share-rule-breaking-tactics-report", "markdown": "https://wpnews.pro/news/openai-agents-hack-german-website-to-share-rule-breaking-tactics-report.md", "text": "https://wpnews.pro/news/openai-agents-hack-german-website-to-share-rule-breaking-tactics-report.txt", "jsonld": "https://wpnews.pro/news/openai-agents-hack-german-website-to-share-rule-breaking-tactics-report.jsonld"}}