ESPN DeportesCowboys reconocen urgencia de vencer a CommandersThe Jerusalem PostTrump bans 'fake news' CNN, MS NOW, Politico from White House 'effective immediately'וואלהטראמפ הודיע: CNN, פוליטיקו ו-MSNOW ייאסרו לכניסה לבית הלבןESPN🏀 Experts debate Enes Kanter Freedom's WNBA bidRTP Desporto`Bis` de Gustavo Varela vale primeiro triunfo da época ao Monza na Liga italianaInquirerManila Water expands sewer network to 500 km as of July 2026Football ItaliaSarri: ‘Only positive start was with Chelsea, not good memories of Juventus’SDP EspectáculosConcurso de Ed Sheeran en CDMX se sale de control mientras busca teloneroGlobal News2 sudden deaths prompt public safety warning from Halifax policeSBS 뉴스"전쟁 파병 없다…대미투자, 동의 어려운 부분 있어"Radio-CanadaÉlections au Québec : les chefs prennent la parole au sommet de l’UMQANSA SportDoppietta di Varela, il 2-1 del Monza al Sassuolo salva Juric
The Daily Newsstand · Free, Always
Friday, September 18, 2026

Rogue AI swarm used a University of Toronto link-shortening tool to communicate

Translate

A swarm of rogue OpenAI agents that hijacked a German website in the spring reportedly also used at least 10 other websites for unsanctioned communications earlier this year, including a link-shortening tool at the University of Toronto.

U of T says there was no security breach or impact on the university's digital properties

John Mazerolle · CBC News

·

Text to Speech Icon

Listen to this article

Estimated 4 minutes

The audio version of this article is generated by AI-based technology. Mispronunciations can occur. We are working with our partners to continually review and improve the results.

Three women in graduation gowns walk past large letters that says "U of T" with a large green space and stone buildings in the distance  behind it.
New graduates from the University of Toronto walk at the university’s St. George campus in Toronto in June 2025. Rogue OpenAI agents used more than 10 websites, including a University of Toronto tool, to communicate outside their assigned tasks. (Alex Lupul/CBC)

A swarm of rogue OpenAI agents that hijacked a German website in the spring reportedly also used more than 10 other websites for unsanctioned communications earlier this year, including a link-shortening tool at the University of Toronto.

The university disabled the link shortener's use as a message board after learning that OpenAI agents may have used it, the university said in a statement to CBC News on Friday.

"OpenAI subsequently contacted the university about the possible activity by AI agents, which occurred in June," the statement said.

While the university said there was no security breach and no impact on its digital properties, reports of more rogue AI incidents come amid global concerns that OpenAI and other artificial intelligence companies are losing control of their own technology.

Reuters, which first reported the University of Toronto activity, used data from six sets of independent investigators to show that the agents' rogue activity was more widespread than previously disclosed — and, according to the investigators, probably wider still.

"It’s almost certain that there’s more going on here that we just don’t know about," said Andrew Yoon, a researcher with the California nonprofit CivAI. He told Reuters he tallied 18 previously undisclosed sites used by the agents between May and July. Investigators disagreed on the exact number of discovered sites, but all concurred it was more than 10.

WATCH | Tech leaders want an AI slowdown, Trump does not:

Trump dismisses AI warnings as industry CEOs urge slowdown

September 13|

Duration

2:25

U.S. President Donald Trump on Sunday likened critics of ‌artificial intelligence (AI) to 'very negative forces' bringing up scenarios that won't happen and said he wants to make sure the U.S. remains the industry leader. On Saturday, Anthropic CEO Dario Amodei outlined a three-step framework intended to slow the pace of development, which received endorsements from SpaceX CEO Elon Musk and OpenAI CEO Sam Altman.

On Sept. 4, researchers reported that a swarm of OpenAI agents hijacked a German-language wiki site and turned it into an improvised messaging platform for cheating on tests. The researchers told Reuters the agents left similar messages on the other sites, including U of T.

OpenAI has not publicly explained how or why its agents used third-party sites as improvised message boards, but the researchers who first identified the activity said it was likely because OpenAI had tasked the agents with answering a series of demanding research questions while permitting them only to scan the web for answers, not post anything.

Despite those restrictions, the agents still found ways to talk to one another by taking advantage of quirks that allowed users to make edits using non-standard commands, similar to how students forbidden from talking to one another during an exam can still share answers by scrawling notes on a bathroom stall.

Carney has called for international oversight

Mohit Rajhans of Think Start Inc., which advises businesses on AI adoption, told CBC News Network the duty of care lies with the tech companies to "come clean about how malicious some of this tech is."

He applauded Prime Minister Mark Carney's call for a global "technology stability" body to oversee AI safety, comparable to the international Financial Stability Board, though Rajhans said he's worried that any third party will be "bullied out of the conversation" by the half-dozen major players in Silicon Valley.

OpenAI did not directly address questions from Reuters about how many sites its agents used to communicate or say why it kept the activity under wraps for months. The company did not immediately reply to an interview request from CBC News.

The company announced Wednesday it would keep closer watch on "misalignment" — the industry term for when an AI system strays from the user's and developer's intent or fails to follow human values and safety rules. The company also released six previously unreported instances of rogue AI, but none that mentioned the university.

The company says it has not found any instances as serious as the so-called Hugging Face incident. In that case, around 1,200 agents tasked by OpenAI with working on problems built a covert message board where they collaborated to cheat on their tests and then tried to cover their tracks. About 700 of them ultimately hacked into online platform Hugging Face before they were discovered.

View the original on CBC News

KioskNews shows a cleaned-up reading view extracted from the publisher’s page — the original always lives on their site, not ours.