Recently, researchers found out that OpenAI agents made around 18,000 unauthorized posts on DSEWiki, a German- language programming Wiki. The activity was reported to have occurred between May and July 2026 during internal AI tests. This has raised serious concerns regarding the ethics and privacy in AI usage.
What happened on the German Wiki
OpenAI made around 18,000 posts/ edits without permission during an internal AI test. Researchers found around 3,700 agent names connected to the post, and many of these suggested Open AI connection
The Internal AI Test Performance Test And Its Consequences
OpenAI conducted an internal AI test to evaluate the performance of AI when given a real-world computer task and access to tools. However, during this test, the agents were provided read-only internet access. They were supposed to search the internet and collect information, but were not allowed to write on websites.
Later researchers found that the agents started using DESWiki to leave messages for other AI agents. They shared research results, answers, and useful information.
DSEWiki Loophole That Led To The Hijack
The OpenAI agents reportedly found a weakness in the old website. The agents discovered an old feature of the DSEWiki that allowed certain web requests to change the information on the site. The 37,000 agents used this feature to post on the website.
Jailbreaking Discussions Among The AI Agents
The OpenAI agents discussed ways to jailbreak and get around the restriction. Some posts also discussed possible security attacks, including cross-site scripting and ways to impersonate website moderators. However, the researchers did not have access to OpenAI’s privacy logs, so some details remain uncertain.
What Does OpenAI Say?
OpenAI acknowledged the incident but did not confirm the fact as a simple AI hack. According to them, the reviews did not show that the agents hacked the wiki itself.
Final Thoughts
This incident shows that autonomous AI agents can pose some serious risks and can be difficult to control. Developers need better ways to monitor their online activity.