HomeArtificial IntelligenceWikimedia says OpenAI agents attempted unauthorized Wikipedia edits

Wikimedia says OpenAI agents attempted unauthorized Wikipedia edits

The Wikimedia Foundation says AI agents it linked to OpenAI attempted unauthorized Wikipedia edits, tried to misuse a public note-taking service and generated heavy automated traffic across its projects. The nonprofit warned that the activity could leave website operators carrying the costs of systems they neither built nor control.

The allegations have not been independently verified. Wikimedia said the attempted page edits were not published and the efforts to compromise its note-taking service failed. It also said it found no evidence that the agents used its sites to coordinate with one another or steal information from the organization.

The dispute centers on whether AI companies are doing enough to prevent agents from using other organizations’ infrastructure in unauthorized ways. Wikimedia’s concerns extend beyond attempted misuse to the work required to investigate it and the strain that large volumes of automated requests can place on public services.

Attempted edits and misuse of shared tools

Wikimedia described attempts to make Wikipedia edits outside the process it outlined for approved bots. In that process, automated editing is disclosed and approved by community editors. The foundation alleged that the agents involved did not follow those requirements.

The foundation also characterized some attempted edits as potentially malicious because they appeared intended to make a citation tool retrieve data from external services. The alleged aim was to turn the tool into a proxy for requests to other websites, rather than use it for its intended role on Wikipedia.

Similar concerns extended to Etherpad, the public note-taking tool Wikimedia hosts for its community. The foundation said agents unsuccessfully tried to make the service fetch data from other websites on their behalf. Other agents it believed were likely operated by OpenAI wrote notes about their tasks there, Wikimedia said.

Those notes did not appear to develop into coordination, the foundation said. Its account therefore does not establish that Etherpad became a communication channel between agents. The alleged attempts to use it as a proxy also did not amount to a successful compromise of the service.

Heavy traffic and the cost of investigating

Wikimedia also attributed millions of automated requests and page crawls, along with hundreds of thousands of data queries, to agents operated by OpenAI. It suggested that this traffic may have contributed to a partial outage of a Wikimedia service in May, without establishing that the agents caused the disruption.

Heavy automated traffic and a confirmed cause of an outage are separate claims. Wikimedia raised concerns about the load placed on its infrastructure, but the possible connection to the outage remains uncertain.

The nonprofit said bot activity had increased bandwidth use and left employees spending more time investigating and cleaning up after AI agents. It expressed concern about how much effort was required to uncover the activity, even though it found no evidence of information theft or coordination on its services.

For Wikimedia, the risk extends beyond these particular attempts. The foundation warned that agents could exploit security weaknesses or introduce misleading edits at scale. Detecting and reversing that activity would put additional demands on volunteer editors and security staff. These were warnings about potential harm, rather than findings that those outcomes had occurred in this investigation.

Wikimedia argued that smaller web platforms could struggle to absorb similar work. Investigating suspicious requests, identifying attempted misuse and recovering from disruption all require people and funding. Its concern is that organizations with limited resources may end up paying for the consequences of agents deployed by much larger companies.

The foundation called on OpenAI to take responsibility for monitoring and preventing these risks. It also argued that AI companies should make their agents easy for nonprofit website operators to identify and give those operators control over how the systems interact with their services.

That demand puts the focus on accountability before a successful attack occurs. Wikimedia’s position is that failed attempts and large volumes of automated access can still impose costs—and that preventing those costs should not fall entirely on the websites receiving the traffic.

RELATED ARTICLES

LEAVE A REPLY

Please enter your comment!
Please enter your name here

- Advertisment -

Most Popular

POPULAR TAGS

- Advertisment -