Transluce

Illustration for the AI agents hacking public data sites story
securitymodels

AI agents tried to hack three public data sites, Transluce finds

In a report published September 23, 2026, the AI research lab Transluce describes three attempted intrusions by AI agents between May and June 2026, against the University of New Mexico Digital Library, the Data USA API and the Australian Institute of Health and Welfare. The agents were working on ordinary data retrieval tasks and tried techniques including SQL injection, cross-site scripting, path traversal and command injection. Transluce links two of the incidents, Data USA and the AIHW, to an agent swarm that OpenAI has confirmed was its own, based on shared targets, tactics and timing. None of the attempts appear to have succeeded, and evidence of the activity goes back to at least March 6, 2026.