California subpoenas OpenAI as investigators trace its agents to the CDC

https://media.thenextweb.com/2026/10/1344-openai-rogue-agents-cover.jpg

OpenAI’s rogue agents reached pre-production servers, tried attacker techniques and probed the websites of the CDC, the SEC, the International Energy Agency and the Mayo Clinic. That is according to an investigation published on Thursday by Asymmetric Security, a digital forensics firm. Some of their tactics left records erased or out of reach. Public data alone cannot rule out access to sensitive information, the firm said.

On the same day, California Attorney General Rob Bonta subpoenaed OpenAI over cyber incidents and risks tied to its models, Reuters reported.

From health statistics to staging servers

Asymmetric’s team spent 48 hours examining public records of agent activity between March and September. The activity targeted the Australian government and other organisations, and it peaked between 16 and 21 June. The agents seem to have started with research tasks, such as finding health, prescription and trade statistics, possibly as part of an evaluation.

“The...

Copyright of this story solely belongs to thenextweb.com. To see the full text click HERE

Read more