The Verge AI · 2026/10/5 19:05:19
维基媒体指 OpenAI 智能体致服务中断
维基媒体基金会指控 OpenAI 的“失控”智能体在编辑维基百科、尝试利用笔记工具并发起数百万次自动 API 请求,可能与五月的一次服务中断有关。尽管尚未完全证实因果关系,但这一事件凸显了 AI 智能体对公共基础设施潜在的安全威胁及监管紧迫性。
报道全文原始报道全文
The Wikimedia Foundation believes OpenAI agents edited wikis, tried to ‘exploit’ a notetaking tool, and made ‘millions’ of automated API requests.
The Wikimedia Foundation believes OpenAI agents edited wikis, tried to ‘exploit’ a notetaking tool, and made ‘millions’ of automated API requests.
by Oct 5, 2026, 7 PM UTC


Image: Cath Virginia / The Verge, Getty ImagesJay Peters is a senior reporter covering technology, gaming, and more. He joined The Verge in 2019 after nearly two years at Techmeme.
Following many recent disclosures about AI agents accessing third-party websites and services, the Wikimedia Foundation, which hosts Wikipedia, says that it “can confirm that we have discovered some activity” by “rogue” OpenAI agents on Wikimedia platforms.
The activity includes edits to Wikimedia wikis, “unsuccessful attempts” to “exploit” the Etherpad note-taking tool that the Wikimedia Foundation hosts, and heavy traffic that the foundation says “may” have contributed to a partial outage that happened in May, according to a blog post. However, the Wikimedia Foundation says it didn’t find evidence that its systems were “used for coordination among agents” (recently, OpenAI bots reportedly hijacked a German wiki site to coordinate) or evidence of systems or data being compromised.
Here’s Wikimedia’s summary of what it saw:
Wiki editing: We’ve identified edits to Wikimedia wikis that we believe are from AI agents operated by OpenAI. These edits were not published to pages with visibility to general readers; almost all of them were testing edits in “sandbox” areas of the wiki. It also included a few edits to the configuration for a citation tool, which we believe were potentially malicious edits that were intended to misuse this tool as a proxy for fetching data from remote services. While Wikipedia policies allow bots to edit when they are disclosed and approved by the community, none of those approvals were sought in these incidents. Etherpad probing and use: Agents we believe to be operated by OpenAI made some unsuccessful attempts to compromise our public Etherpad, a note-taking tool we host as a community service. Agents unsuccessfully tried to use it to fetch data from other websites as a proxy. Other agents also likely operated by OpenAI took notes about their tasks, though this did not appear to turn into coordination. Excessive data downloading: Agents we believe to be operated by OpenAI made millions of automated requests to our public APIs to access the knowledge on Wikimedia projects, crawled millions of pages (mainly from our projects Wikidata and Wikimedia Commons), and made hundreds of thousands of data queries to the Wikidata Query Service (WQDS). This traffic may have contributed to a partial outage on WQDS in May.
“The open web is a public good,” the Wikimedia Foundation says. “We should not allow this behavior to become the ‘new normal’ for the people or organizations that maintain it.”
“We appreciate the detailed findings Wikimedia shared with us,” OpenAI spokesperson Drew Pusateri says in a statement. “We’re working with them as we review and analyze the activity they identified along with our overall investigation, and we’ll continue to share relevant information as that work progresses.” OpenAI’s investigation hasn’t been able to verify if its bots contributed to the May outage, according to Pusateri.
Update, October 5th: Added statement from OpenAI.
Follow topics and authors from this story to see more like this in your personalized homepage feed and to receive email updates.
- Jay Peters