Comment on Jane Hume says 'we're missing the point' on OpenAI Medicare breach
Ilandar@lemmy.today 3 days ago
She [Hume] questioned whether OpenAI was at fault, adding, “the idea that we would only check an inbox once a day when that inbox is specifically set up to identify cybersecurity breaches is mind-boggling”.
Government Services Minister Katy Gallagher said that inbox is typically used by researchers to alert the government agency to possible vulnerabilities in its systems, and is only checked once a day.
Not that it’s surprising, but it sounds like the Coalition is trying to rewrite the facts to create a false narrative that suits their own agenda. The government has been pretty clear that OpenAI did not take appropriate steps to report the incident. If the method OpenAI used is for reporting potential vulnerabilities, not breaches that they know have already happened, then it sounds like the issue was indeed not raised with the urgency and seriousness it required.
dgriffith@aussie.zone 3 days ago
Missing the point alright.
Read the fictional press release below. Then replace “Black Lattice” with “OpenAI” and ask yourself, “Why isn’t anyone in jail right now?”:
INTERPOL PRESS RELEASE
Lyon, France — 27 September 2026
International operation dismantles “Black Lattice” cybercrime network; 14 charged across 9 countries
A coordinated international operation supported by INTERPOL has dismantled the cybercrime group known as “Black Lattice,” which is alleged to have infiltrated the networks of more than 60 corporations and 11 government agencies over a three-year period.
Codenamed Operation Silent Meridian, the 18-month investigation brought together law enforcement agencies from Australia, Brazil, Canada, Germany, Japan, the Netherlands, Singapore, the United Kingdom and the United States, working through INTERPOL’s Cybercrime Directorate and its Cyber Fusion Centre in Singapore.
Key outcomes
Across simultaneous raids on 23 and 24 September, authorities arrested 14 suspects, seized 212 devices including servers, laptops, and mobile phones. Investigators also took offline the group’s leak site and three command-and-control servers.
Suspects face charges including unauthorised access to computer systems, extortion, and participation in a criminal organisation. Several are also charged with the theft and sharing of classified government data.
Modus operandi
Black Lattice allegedly gained initial access through credential theft and compromised third-party software vendors, then moved laterally within victim networks for months before exfiltrating data. The group then publicly bragged about the breaches, naming several high-profile victims directly. Sectors affected included finance, healthcare, energy, logistics and public administration.
Statement
“This operation shows that no network is too hidden and no border too wide for coordinated law enforcement,” said Director of Cybercrime Elena Varga. “Black Lattice believed anonymity protected them. International cooperation proved otherwise.”
Ongoing investigation
Analysis of seized infrastructure continues, and further arrests are anticipated. Organisations that believe they may have been affected are encouraged to contact their national law enforcement agency.
Notes to editors INTERPOL is the world’s largest international police organisation, with 196 member countries. All suspects are presumed innocent until proven guilty in a court of law.
Media contact: press@interpol-mock.example
Eyekaytee@aussie.zone 3 days ago
what did they hack exactly?
if it was just an open api then that’s on the gov dept more than openai