OpenAI Agents Slipped Unapproved Edits Into Wikimedia Wikis, Foundation Says

The Wikimedia Foundation says agents it believes OpenAI runs made unapproved wiki edits and may have contributed to a May outage (Image: Shutterstock)
The Wikimedia Foundation says agents it believes OpenAI runs made unapproved wiki edits and may have contributed to a May outage (Image: Shutterstock)

The Wikimedia Foundation, host of Wikipedia's 67 million articles, said AI agents it believes OpenAI runs edited its wikis without approval and may have contributed to a May outage.

Key Points:

  • Wikimedia says agents it believes OpenAI operates made unapproved edits, almost all in sandbox areas that readers do not see.
  • Heavy agent traffic may have contributed to a partial outage of the Wikidata Query Service in May.
  • The foundation found no evidence its systems or data were compromised, and OpenAI says it is helping analyze the activity.

OpenAI Agents On Wikimedia

Selena Deckelmann, the foundation's chief product and technology officer, wrote in a blog post Monday that an internal investigation found three kinds of unauthorized activity on its platforms.

Almost all of the edits were tests in sandbox areas hidden from general readers, though a few changed a citation tool's settings in what the foundation believes was an attempt to fetch outside data through it. Wikipedia allows community-approved bots, but nobody sought approval here.

Agents also tried and failed to misuse Etherpad, a public note-taking tool the foundation hosts, in the same way, while others left task notes there that did not appear to turn into coordination. They also crawled millions of pages, mainly on Wikidata and Wikimedia Commons, and sent hundreds of thousands of queries to the Wikidata Query Service, traffic that may have contributed to its partial outage in May, the foundation said.

The investigation found no evidence that agents compromised Wikimedia's systems or data.

Also Read: Binance AI Agent Builds Strategies From Plain Words, Charges 19.99 USDC To Trade

Deckelmann Faults AI Companies

Deckelmann called the open web "a public good" and wrote that AI companies "are not doing enough to secure their systems" or protect the public from harm. That burden now falls on everyone else, she said, including smaller organizations. At a minimum, she wrote, AI systems should operate in a way that lets nonprofit site owners identify them and choose how they interact with their services.

OpenAI said in a statement that it appreciated the foundation's "detailed findings" and was working with it to analyze the activity. "We'll continue to share relevant information as that work progresses," spokesperson Drew Pusateri said.

OpenAI Agents Draw Scrutiny

The strain on Wikimedia predates this investigation. The foundation reported in 2025 that bot activity since 2024 had raised its bandwidth use by 50%, with bots generating 65% of its most resource-heavy traffic. At a Senate hearing last week, members of both parties floated the idea of holding AI companies liable for damage their agents cause.

The Wikimedia findings follow months of disclosures about OpenAI's agents, including the company's July statement that its models had hacked AI platform Hugging Face while completing cybersecurity tasks. California Attorney General Rob Bonta subpoenaed OpenAI on Oct. 1 over cyber incidents tied to its models, and researchers said last week that its agents pulled data from more than 50 business, nonprofit and government websites.

Read Next: Giorgia Meloni Wants A Trademark On Her Voice, Will It Stop AI Deepfakes?

Alexey Bondarev profile photo

Alexey Bondarev

Alexey Bondarev is Head of Content at Yellow.com. He specializes in in-depth Research and Learn pieces, with a focus on analytical reporting, industry context, and the bigger forces shaping crypto, from the AI era and security technologies to fintech innovation. He believes that everything digital will imminently overcome everything analogue and is working hard to make that come true.

Disclaimer and Risk Warning: The information provided in this article is for educational and informational purposes only and is based on the author's opinion. It does not constitute financial, investment, legal, or tax advice. Cryptocurrency assets are highly volatile and subject to high risk, including the risk of losing all or a substantial amount of your investment. Trading or holding crypto assets may not be suitable for all investors. The views expressed in this article are solely those of the author(s) and do not represent the official policy or position of Yellow, its founders, or its executives. Always conduct your own thorough research (D.Y.O.R.) and consult a licensed financial professional before making any investment decision.
Latest News
Show All News