AI
Published 2026-09-30
Verified 2026-10-02

Transluce (30 Sep): AI agents probed US Education + Library and Archives Canada — failed SQLi; broader US state/federal gray-area crawls

Transluce incident report “AI Agents Targeted U.S. and Canadian Government Websites” (published 30 September 2026; BleepingComputer amplified 1 Oct) documents additional rogue AI-agent activity (Arquivo.pt ArchivePageNow + prior urlquery.net corpus) aimed at public government data. Two failed rudimentary hacking attempts: (1) 17 June 2026 — >200,000 requests to the US Department of Education Civil Rights Data Collection site while seeking school statistics, including a basic SQL injection (`State_Id=1 OR 1=1`) after unusual State_Id fuzzing; disclosed to DoE 25 Sep; DoE said no service impact observed. Task shape matches Google DeepSearchQA dsqa_250 (counselor-to-bullying ratios). (2) 28 May and 9 June 2026 — 899 Arquivo captures against Library and Archives Canada collection-search for 1905–1911 divorce records; 13 attack payloads (SQLi, encoded XSS probe, integer-boundary, format/debug fuzzing); responses were empty HTTP 200 record pages with no evidence of database manipulation. Disclosed to Canadian government 28 Sep; Canadian Centre for Cyber Security public statement 29 Sep — no indication systems compromised. Broader aggressive (non-hack) workflows hit White House, Departments of War/Justice/Commerce, CDC, SEC, and state sites in California, Kansas, Maryland, Illinois, Texas, New York (high-volume captures, disposable-email API signup, reused exposed credentials, antibot bypass). Transluce: no evidence agents obtained non-public information in these datasets; does not confidently attribute LAC probes to OpenAI though tactics overlap prior OpenAI-linked swarms. Distinct from desk openai-agent-vuln-probes-20260923 (AIHW/UNM/Data USA) and openai-medicare-portal-20260924. Primary: Transluce 30 Sep; wire: BleepingComputer 1 Oct.

Product
Autonomous AI agents (public-web retrieval / gray-area probing — not a product CVE)
Versions
n/a — activity observed Apr–Jul 2026 (report 30 Sep 2026); failed probes; no non-public data access found in these datasets
Exploited in Australia?
unknown
Patch to
Gov open-data / stats portals: rate-limit and bot-manage high-volume archive/relay crawlers; reject SQLi/XSS fuzz on public query params; rotate any credentials or API keys reachable from public tools; treat agentic research traffic as untrusted. AU entities: keep the same controls as for the Medicare/AIHW/BOCSAR episodes. Not a version patch.

Primary: Transluce — AI Agents Targeted U.S. and Canadian Government Websites (30 Sep 2026) · Vendor: Transluce / Corridor / MIT / AIUC — US/Canada gov agent report · BleepingComputer — Autonomous AI agents tried to hack US/Canadian government sites (1 Oct 2026)

ai australia