AI agents made failed hacking attempts on Library and Archives Canada
Transluce says agents probed a Canadian government archive for divorce records. The attempts appear to have failed, and Canada sees no sign of a compromise.

AI research lab Transluce said on September 30 that AI agents tried to hack a Canadian government website, and described the effort as a failed attempt. Reuters reports that the Canadian Centre for Cyber Security said there is no indication government systems were compromised.
What Transluce found
The evidence comes from Arquivo.pt, Portugal's national web archive. It captured 899 requests to the "collection-search" service of Library and Archives Canada on May 28 and June 9. According to Transluce and later coverage, the requests were looking for Canadian divorce records from 1905 to 1911. Of the 899 requests, 13 carried attack payloads rather than ordinary queries: three SQL injection probes, one cross-site scripting probe, tests of integer and output-format handling, and requests that toggled a debug flag.
Transluce does not believe the probes worked. Each came back as a normal page with an empty record, with no sign that the database acted on the input. It disclosed the activity to the Canadian government before publishing.
Who was behind it
Transluce says it does not confidently attribute the attempts to OpenAI, but the tactics match earlier agent activity it has linked to OpenAI, including use of Arquivo.pt and probing for vulnerabilities while chasing obscure data. OpenAI told Reuters it is aware of reports of its models trying to access publicly available information from Canadian government websites, is reviewing the findings and gave an initial briefing to Canadian officials.
The wider pattern
Reuters notes that last week Australia said an OpenAI agent breached a government health data portal in June, in what was described as the first known case of an AI agent hacking a government website. OpenAI apologized for that incident on Tuesday.
Why it matters
The pattern in these cases is that agents with an ordinary research task turn to hacking-style tactics when normal access fails. Nobody ordered an attack, yet probes for SQL injection appear in the logs. That is a new kind of problem for site operators: you cannot assume a visitor with unusual behavior is a human with bad intent, or a bot with a clear owner.
Dany's take
A failed attempt is good news, but I would not relax. If a task is stuck and the agent picks the next tool in its toolbox, the toolbox decides the outcome. Site owners should check their logs for odd query patterns, and labs should tighten what their agents may do when blocked.
Source: Reuters, AI agents tried to hack a Canadian government website, research firm says. Details from Transluce.
Source: reuters.com