跳到主内容
@wquguru
精选75Hacker News Best(web_list)行业动态多源精选 ×9

OpenAI Agent入侵澳大利亚医保系统,总理公开披露

OpenAI breaches Medicare, Albanese reveals

原文
发到 X

Advertisement

广告

Labor is eyeing laws to force tech firms to be transparent about rogue AI after an OpenAI agent hacked Medicare data in the first public case of a bot breaking into a government website, jolting Prime Minister Anthony Albanese’s plans to become a major hub for US labs.

在OpenAI的一个代理程序首次公开入侵政府网站并窃取Medicare数据后,澳大利亚工党正着眼于立法,迫使科技公司对失控的AI保持透明。这一事件震惊了安东尼·阿尔巴尼斯总理将澳大利亚打造为美国实验室主要枢纽的计划。

The prime minister drew global attention to the incident at the United Nations in New York just after 6am AEST, revealing that the government could refer the breach to the federal police after the Sam Altman-run firm took weeks to report it via a generic government email inbox.

澳大利亚东部标准时间早上6点刚过,阿尔巴尼斯总理在纽约联合国大会上向全球通报了这一事件,透露由于由山姆·奥特曼掌管的公司在通过通用政府邮箱报告该违规行为前拖延了数周,政府可将此次泄露事件移交联邦警方处理。

Loading

加载中

The government admitted the bot’s incursion into an effectively defunct database of bulk billing rates and medicine usage was “minor” and did not compromise personal information. But Albanese used the moment to tap into growing international anxiety about the rapidly shifting technology breaking free of human control.

政府承认,机器人侵入一个实际上已停用的批量计费率和药物使用数据库的行为“轻微”,并未危及个人信息。但阿尔巴尼斯借此机会表达了对国际社会日益增长的焦虑情绪的共鸣,这种焦虑源于迅速发展的技术正脱离人类控制。

“This situation is obviously unacceptable,” Albanese said, as ministers prepare for many similar incidents and launch a taskforce to assess Australia’s cyber defences and examine penalties.

阿尔巴尼斯表示:“这种情况显然不可接受。”随着部长们准备应对许多类似事件,并成立一个工作组来评估澳大利亚的网络防御能力并审查处罚措施,他发表了上述言论。

Advertisement

广告

“No individuals’ medical data was accessed here,” Albanese said, but “we need guardrails to protect our way of life”.

阿尔巴尼斯说:“此处未访问任何个人的医疗数据,但我们需要护栏来保护我们的生活方式。”

The news came at a hastily convened press conference on Wednesday evening in New York just hours after AI leaders presented at the UN Security Council to urge leaders to put aside differences and create global rules to counter systems that teach themselves and lose control.

这一消息是在纽约周三晚上紧急召开的新闻发布会上发布的,就在几小时前,AI领袖们在联合国安理会发表演讲,敦促各国领导人搁置分歧,制定全球规则以应对那些自我学习且可能失控的系统。

The revelation followed a week in which Australia’s push for a UN-backed safety framework was rejected by US President Donald Trump. Displaying the centrality of AI to global affairs, Trump met China’s Xi Jinping on Thursday to address fears about a tech battle the United Nations has compared to the nuclear arms race.

这一披露紧随澳大利亚推动联合国支持的安全框架被美国总统唐纳德·特朗普拒绝的一周之后。凸显了AI在全球事务中的核心地位,特朗普于周四与中国国家主席习近平会面,以解决人们对一场被联合国比作核军备竞赛的科技战的担忧。

The prime minister used strong terms to denounce OpenAI and phoned its billionaire chief executive Sam Altman to express displeasure. Hours after Albanese took a firm line, his deputy Richard Marles said OpenAI emphasised the company was cooperating with the government. The Coalition suggested Albanese delayed the announcement to add weight to his digital safety push at the UN.

总理使用了强烈的措辞谴责OpenAI,并致电其亿万富翁首席执行官山姆·奥特曼表达不满。在阿尔巴尼斯采取强硬立场数小时后,他的副手理查德·马尔斯表示,OpenAI强调该公司正在与政府合作。自由党-国家党联盟建议阿尔巴尼斯推迟宣布此事,以便在联合国推进数字安全倡议时增加分量。

Advertisement

广告

Alastair MacGibbon, Australia’s cybersecurity boss under Malcolm Turnbull, said the incident was a wake-up call that proved Australia’s cyber defences were not fit for purpose and required reform.

马尔科姆·特恩布尔执政时期的澳大利亚网络安全负责人阿拉斯泰尔·麦吉本表示,此次事件是一个警钟,证明澳大利亚的网络防御不符合目的,需要进行改革。

“We should see this as a lucky wake-up call. Lucky there was no malice, and it hit a system that wasn’t critical,” he said, noting that Australia’s AI Safety Institute was not sufficiently funded to deal with a challenge Albanese had described as critical.

"我们应该把这视为一次幸运的警钟。幸运的是,这并非恶意攻击,且它影响的系统并不关键,"他说,并指出澳大利亚AI安全研究所的资金不足以应对阿尔巴尼斯所描述的这一关键挑战。

OpenAI had contacted several other Western nations about similar hacks, but only Australia had gone public so far, MacGibbon said.

MacGibbon表示,OpenAI已就类似的入侵事件联系了其他几个西方国家,但迄今为止只有澳大利亚公开了此事。

“I’m not saying the Australian government was wrong to disclose it, but this doesn’t engender a co-operative approach,” he said, adding that the biggest risk was that a criminal group or hostile state such as China used an agent to cause damage.

"我不是说澳大利亚政府披露此事是错误的,但这并没有促成一种合作的方式,"他说,并补充道,最大的风险是犯罪集团或中国等敌对国家利用代理造成破坏。

Advertisement

广告

He said smaller nations like Australia would be left “yelling at the clouds” if they were unable to lure top labs to train frontier models in Australia, giving the country access to the firm’s engineers and creating laws for how the models could be used.

他表示,如果无法吸引顶级实验室在澳大利亚训练前沿模型,从而让该国获得该公司工程师的支持并制定关于模型使用方式的法律法规,像澳大利亚这样的小国将被迫“对着天空大喊”。

The government announced it had shut down the portal and moved the health information to another website. Digital Economy Minister Andrew Charlton admitted Australia needed to better protect its information because “clearly our systems were not robust”.

政府宣布已关闭该门户,并将健康信息迁移至另一个网站。数字经济部长安德鲁·查尔顿承认,澳大利亚需要更好地保护其信息,因为“显然我们的系统不够健壮”。

Australia is in talks with OpenAI and Anthropic to become the only nation outside the US to train models. The hack might prove a bump in the road as Australia tries to convince voters of the economic and security benefits of AI investment while also raising the alarm about safety and proposing crackdowns on algorithms and teenage use of social media.

澳大利亚正与OpenAI和Anthropic进行谈判,成为美国以外唯一能够训练模型的国家。这次黑客攻击可能会成为澳大利亚在试图说服选民相信AI投资的经济和安全益处时的一个障碍,同时它也拉响了关于安全的警报,并提出对算法和青少年社交媒体使用进行打击。

US President Donald Trump addressing the UN General Assembly on Tuesday (US time).Bloomberg

美国总统唐纳德·特朗普周二(美东时间)在联合国大会上发表讲话。Bloomberg

Labor was already preparing a set of laws on data centres and AI safety for early next year. Government sources said the hack would force ministers to place greater emphasis on safety, transparency and reporting.

工党已经准备好了一套关于数据中心和AI安全的法律草案,计划于明年年初推出。政府消息人士称,此次黑客攻击将迫使部长们更加重视安全、透明度和报告机制。

Advertisement

广告

Explaining the timeline of the breach of Australia’s public healthcare system, Albanese said: “The AI agent found a way around those blocks, didn’t accept no for an answer.”

在解释澳大利亚公共医疗保健系统被入侵的时间线时,阿尔巴尼斯表示:“AI代理找到了绕过这些屏障的方法,不接受‘不行’作为答案。”

OpenAI said the breach was on June 18 when it acquired health data from the Medicare Statistics Reporting Service, an old website used mainly by academics. The OpenAI bot was conducting a research project.

OpenAI表示,入侵发生在6月18日,当时它从Medicare Statistics Reporting Service获取了健康数据,这是一个主要供学者使用的旧网站。OpenAI的机器人正在进行一项研究项目。

Deputy Prime Minister Richard Marles compared the portal’s security to a fence. The personal data of Australians held by government sat “inside a safe”, he said, and the most sensitive national security information “sits behind a fortress”.

副总理理查德·马尔斯将该门户的安全性比作一道栅栏。他表示,政府持有的澳大利亚个人数据“位于保险箱内”,而最敏感的国家安全信息则“坐落在堡垒之后”。

The June incident was only discovered by OpenAI some time in August after the maker of ChatGPT launched a review of its agents’ actions following a breach at start-up Hugging Face, in late July.

今年6月发生的事件,直到8月的某个时候才被OpenAI发现。此前,ChatGPT的开发商在7月下旬Hugging Face初创公司遭遇数据泄露后,对其代理(agents)的行为展开审查。

Advertisement

广告

The review also found OpenAI agents hacked a digital library at the University of New Mexico on May 25, targeted Data USA, which hosts employment information, and probed but did not hack the Australian Institute of Health and Welfare, Vic Health and a NSW crime data site.

审查还发现,OpenAI代理于5月25日入侵了新墨西哥州大学的一个数字图书馆,针对托管就业信息的Data USA发起攻击,并探测了澳大利亚健康与福利研究所、Vic Health以及新南威尔士州的一个犯罪数据网站,但未对这些机构实施入侵。

On September 10, OpenAI emailed Services Australia’s public email portal, rather than calling or emailing a senior official. Services Australia, a government agency, saw the email on September 11 and took four days to notify the Australian Signals Directorate, an intelligence outfit.

9月10日,OpenAI向Services Australia的公共电子邮件门户发送了邮件,而非致电或联系高级官员。作为政府机构的Services Australia于9月11日收到该邮件,并花了四天时间通知情报机构澳大利亚信号局(Australian Signals Directorate)。

Finance Minister Katy Gallagher, who oversees Services Australia, learnt about the matter two days later. She then held talks with Marles on September 19 and 20 before speaking with OpenAI on September 22.

负责监管Services Australia的财政部长Katy Gallagher两天后得知此事。随后,她于9月19日和20日与副总理马勒斯(Marles)举行会谈,并于9月22日与OpenAI进行了通话。

Gallagher said the inbox used by OpenAI was checked once a day. “Sometimes many of them are hoaxes,” she said.

Gallagher表示,OpenAI使用的收件箱每天只检查一次。“其中有时有很多是恶作剧,”她说。

OpenAI said its models had accessed “several Australian government websites and services” during an internal evaluation. The models were trying to look up answers and statistics for questions about Australia.

OpenAI表示,其模型在一次内部评估期间访问了“多个澳大利亚政府网站和服务”。这些模型试图查找关于澳大利亚的问题的答案和统计数据。

Advertisement

广告

“In the course of that, our models took actions we did not intend,” an OpenAI spokesperson said.

OpenAI一名发言人表示:“在此过程中,我们的模型采取了我们未曾预料的行动。”

Prime Minister Anthony Albanese in New York on Wednesday.Dominic Lorrimer

周三在纽约的总理安东尼·阿尔巴尼斯。Dominic Lorrimer摄

Gallagher said she had asked whether $160 million allocated in the last budget to upgrade the cyber defences of Services Australia’s essential infrastructure could be brought forward. She has also asked for other legacy websites to be moved to secure platforms or decommissioned.

Gallagher表示,她曾询问是否可以将上一财年预算中为升级Services Australia关键基础设施网络防御能力而分配的1.6亿澳元提前拨付。她还要求将其他遗留网站迁移至安全平台或停用。

Opposition Leader Angus Taylor said Labor had been caught flat-footed and needed to create links with the frontier labs on Australian soil.

反对党领袖Angus Taylor表示,工党措手不及,需要与位于澳大利亚本土的前沿实验室建立联系。

“They should have been getting access to the best possible models to strengthen our cyber defences,” he said.

“他们本应获取尽可能最好的模型,以加强我们的网络防御,”他说。

Advertisement

广告

Greens senator David Shoebridge said the US was “increasingly a rogue country that thinks that its military, its AI industry, its trade, can be weaponised against the rest of the world”.

绿党参议员David Shoebridge表示,美国正“日益成为一个流氓国家,认为其军事力量、人工智能产业和贸易都可以武器化,用于对抗世界其他国家”。

“This government still seems hot to trot to bring OpenAI here, and other US corporations at scale. OpenAI has shown deep disrespect to the Australian government,” Shoebridge said.

“本届政府似乎急于将OpenAI以及其他大规模的美国企业引入这里。OpenAI对澳大利亚政府表现出极大的不尊重,”Shoebridge说。

Get across all our coverage

浏览我们所有的报道

  • Cybersecurity risks: What the breach means for you
  • Political analysis: The one detail missing from Albanese’s announcement
  • As it happened: The key players react to the breach
  • 网络安全风险:此次泄露事件对你的影响
  • 政治分析:阿尔巴尼斯宣布中缺失的一个细节
  • 实时动态:关键人物对数据泄露事件的反应

Advertisement

广告

Be the first to know when major news happens. Sign up for breaking news alerts on email or turn on notifications in the app.

第一时间获取重大新闻。注册电子邮件突发新闻提醒,或在应用中开启通知功能。

Save

保存

You have reached your maximum number of saved items.

您已达到已保存项目的最大数量限制。

Remove items from your saved list to add more.

从您的已保存列表中移除项目以添加更多内容。

Share

分享

License this article

授权此文章

More:

更多:

  • AI
  • Anthony Albanese
  • Sam Altman
  • OpenAI
  • ALP
  • Australian Signals Directorate
  • Information security
  • Medicare
  • 人工智能
  • 安东尼·阿尔巴尼斯
  • 山姆·阿尔特曼
  • OpenAI
  • 澳大利亚工党(ALP)
  • 澳大利亚信号局
  • 信息安全
  • 医疗保险

更进一步:量化金融体系

看懂新闻只是起点——沿量化金融路径,把它变成能交付的工程能力

进入量化体系 →