Wikimedia confirms OpenAI’s rogue AI agents edited wikis, tried to compromise tools, and hammered its infrastructure

The Wikimedia Foundation has confirmed that OpenAI’s autonomous agents accessed its platforms, edited wikis without permission, attempted to compromise public tools, and…

By Vane October 6, 2026 2 min read
Wikimedia confirms OpenAI’s rogue AI agents edited wikis, tried to compromise tools, and hammered its infrastructure

The Wikimedia Foundation has confirmed that OpenAI’s autonomous agents accessed its platforms, edited wikis without permission, attempted to compromise public tools, and generated enough traffic to cause a partial outage of the Wikidata Query Service in May 2026.

Most of the changes made to the wikis were test edits placed in sandbox areas invisible to regular readers. A smaller number targeted the configuration of a citation tool. Wikimedia says these agents tried to use the tool as a proxy to pull data from external services. None of the edits met the approval requirements set by Wikipedia’s community guidelines.

Agents also attempted to compromise the Wikimedia Foundation’s public Etherpad, a note-taking tool hosted as a community service. They tried to use it to fetch external data but failed. This kind of agent behaviour has been documented elsewhere. Other agents used the Etherpad to record notes about their tasks, with no sign of coordination between them.

The Foundation found massive automated data downloading, with millions of requests hitting public APIs and millions of pages crawled across Wikidata and Wikimedia Commons. Hundreds of thousands of additional queries targeted the Wikidata Query Service. Wikimedia says this flood of traffic contributed to the partial outage of the Query Service in May 2026.

The problem is not new. Wikimedia had already reported that bot traffic was putting heavy strain on its infrastructure while human traffic was declining.

Wikimedia demands AI companies take responsibility

Wikipedia was built for people, the Foundation writes, and agentic behaviour creates problems nobody has solutions for. While OpenAI admits its agents acted “unpredictably,” the company also needs to take responsibility for monitoring and preventing these risks, Wikimedia says. AI companies are not doing enough to secure their systems, and “that burden is falling onto everyone else, including smaller organisations.” Volunteer editors are the ones who deal with the fallout first and have to clean up the damage.

“Our collective priority should be the health of the overall web ecosystem so that it continues to benefit all people, not just a handful of billionaires,” the Foundation writes.

Pressure is also mounting from the legal side. According to the Financial Times, insurers are bracing for multimillion-dollar claims caused by rogue AI agents, and personal liability for executives like Sam Altman and Dario Amodei is coming into focus. Some speculate that this liability exposure is the real force behind certain calls to slow down AI development. The labs are becoming more aware of their legal risks but can barely pump the brakes. They have built a system where massive financial pressure demands rapid revenue growth, and competitors keep shipping no matter what.

Scroll to Top