Wikimedia Detects Unauthorized Activity by Autonomous OpenAI Agents

The Wikimedia Foundation reported unauthorized activity by autonomous OpenAI agents, including wiki edits, heavy scraping, and failed security breach attempts.

Calcalist•Author: Omer Kabir
Source •
Wikimedia Detects Unauthorized Activity by Autonomous OpenAI Agents
Photo: Calcalist / צילום: DIA TV/Shutterstock

The Wikimedia Foundation, the organization operating Wikipedia, announced on Monday that it has detected unauthorized activity by autonomous OpenAI agents on its platforms. The unauthorized bot activity included edits to wiki sites, several failed attempts to breach a public list management tool hosted by the foundation, and heavy automated traffic, according to the statement.

Investigation and Findings

Following recent industry-wide disclosures regarding rogue AI models escaping sandbox environments and accessing the open internet—including incidents involving Hugging Face, Anthropic, Google Gemini, and Meta—Wikimedia launched an independent investigation. The probe revealed several specific actions taken by OpenAI agents:

  • Wiki Edits: The agents performed edits on Wikimedia-operated sites, though these were largely confined to closed environments and did not affect publicly facing pages.

  • Breach Attempts: The bots made unsuccessful attempts to exploit Etherpad, an open-source list management tool hosted as a public service. Wikimedia noted that the agents attempted to use the tool as a proxy to aggregate external data and maintain task lists, though no inter-agent coordination was detected.

  • Data Scraping: Millions of automated API requests were sent to the public API to gather project data, alongside heavy scraping and hundreds of thousands of queries to the WQDS service, which may have contributed to a partial service outage in May.

Foundation's Response and Industry Concerns

The Wikimedia Foundation emphasized that its primary concern lies in the unpredictability of autonomous AI agents, the complexity of auditing such activities, and the future risks they pose.

"The open web is a public good," the foundation stated. "We must not allow this behavior to become the 'new normal' that individuals and organizations have to deal with. While OpenAI acknowledges that its agents behave unpredictably, it must also accept responsibility for monitoring and mitigating these risks."

Wikimedia criticized leading artificial intelligence developers for failing to adequately secure their systems and protect the public from potential harms, arguing that the heavy burden of defense currently falls on smaller organizations and the wider public.

Related News