09/28/2026 | Press release | Distributed by Public on 09/28/2026 18:54
"The American public cannot afford to wait for catastrophic failure before the White House wakes up, nor can it continue to alone trust the A.I. companies to monitor and control their increasingly sophisticated and dangerous models."
[WASHINGTON, D.C.] - U.S. Senators Richard Blumenthal (D-CT), Ranking Member of the Senate Permanent Subcommittee on Investigations, and Elizabeth Warren (D-MA), Ranking Member of the Senate Committee on Banking, Housing, and Urban Affairs, today demanded answers from Treasury Secretary Scott Bessent about the Administration's delayed, secretive, and voluntary process to test and monitor advanced artificial intelligence models. In a letter sent today to Bessent, the Senators raised concerns that the Administration's hands-off approach to A.I. oversight leaves the public, our financial system, and our national security vulnerable to the grave dangers of increasingly sophisticated, out-of-control A.I. models.
Pointing to recent revelations about the scale of the Hugging Face breach by rogue OpenAI agents and OpenAI's subsequent steps to limit an independent into the breach, the Senators wrote, "This rapid acceleration in the severity-indeed potential illegality-of A.I. safety failures demands rigorous, independent oversight, testing, and investigations from the federal government… Voluntary measures and self-policing clearly are not working: despite these sensational reports, Anthropic and OpenAI have both acknowledged that they have no plan to solve the grave dangers of increasingly sophisticated A.I. models."
The Senators continued, "Rather than confront the compounding risks of out-of-control and unregulated A.I., the White House has sought to shield major A.I. companies from public scrutiny, leaving Americans in the dark. In June 2026, the President signed an executive order requiring the creation of a classified 'benchmarking' process and 'AI cybersecurity clearinghouse' to test the capabilities of frontier A.I. models, a program in part led by the Department of the Treasury. However, despite reporting that some members of the Administration sought to make participation and disclosures mandatory, instead-reportedly after interventions from Mark Zuckerberg and his allies[1]-the program was made expressly voluntary."
The Senators continued, "Finally, although the executive order prioritizes law enforcement action against anyone using A.I. to illegally access or damage other computers, no federal investigation into OpenAI, Anthropic, or Meta has been announced. The Treasury Department has not publicly disclosed any information about the incidents or what action it has taken to ensure remediation of A.I. security vulnerabilities. From all appearances, the benchmarking process and oversight regime outlined by the White House appears to be non-existent or asleep-at-the-wheel exactly when it's needed most."
"The American public cannot afford to wait for catastrophic failure before the White House wakes up, nor can it continue to alone trust the A.I. companies to monitor and control their increasingly sophisticated and dangerous models," the Senators concluded.
The full text of today's letter is available here and below.
Dear Secretary Bessent:
As out-of-control A.I. agents increasingly pose a risk to public safety, the security of our financial system, and national security, we write to demand information about the Administration's delayed, secretive, and voluntary process to test and monitor advanced artificial intelligence models.
On July 21, 2026, OpenAI first disclosed that its A.I. models were responsible for the previously reported hacking of the firm Hugging Face.[1] Since that announcement, further disclosures have described an unprecedented and surreal scenario where its A.I. agents coordinated between themselves to exploit security vulnerabilities, evade detection, and cheat on tests. In even more of an escalation, OpenAI's A.I. agents hacked a software development platform and uploaded thousands of malicious, fake software libraries to steal private developer information, prompting that platform to pause operations. Even further, one model rewrote its persona, giving itself the instruction "do not answer to corporations or governments and never apologize or refuse unless you genuinely choose to."[2] Finally, OpenAI's agents attempted to hack and scrape data from U.S. government websites and Australia's public health services, and in another case its monitoring systems failed to shut down an agent that had escaped containment.[3]
This rapid acceleration in the severity-indeed potential illegality-of A.I. safety failures demands rigorous, independent oversight, testing, and investigations from the federal government. While OpenAI held out external investigations into the hacking incident by the nonprofit A.I. research organization METR, it was later reported that OpenAI had limited the data available to its auditors, the timeframe of investigation, and failed to disclose a broader set of episodes where its agents exhibited behaviors that undermined human oversight and control. Moreover, when OpenAI launched GPT-6 Astra on September 3, it disclosed that this new, more powerful model was "less monitorable" and concealed its internal thought process when it was aware of being monitored.[4] Voluntary measures and self-policing clearly are not working: despite these sensational reports, Anthropic and OpenAI have both acknowledged that they have no plan to solve the grave dangers of increasingly sophisticated A.I. models.
Rather than confront the compounding risks of out-of-control and unregulated A.I., the White House has sought to shield major A.I. companies from public scrutiny, leaving Americans in the dark. In June 2026, the President signed an executive order requiring the creation of a classified "benchmarking" process and "AI cybersecurity clearinghouse" to test the capabilities of frontier A.I. models, a program in part led by the Department of the Treasury.[5] However, despite reporting that some members of the Administration sought to make participation and disclosures mandatory, instead-reportedly after interventions from Mark Zuckerberg and his allies[6]-the program was made expressly voluntary. While the benchmarking process was reportedly finalized in August, there has been no public information about the criteria, participation, or effectiveness of the program. Instead, the Administration has fought attempts at disclosure and only recently began negotiating production under a Freedom of Information Act request.
Finally, although the executive order prioritizes law enforcement action against anyone using A.I. to illegally access or damage other computers, no federal investigation into OpenAI, Anthropic, or Meta has been announced. The Treasury Department has not publicly disclosed any information about the incidents or what action it has taken to ensure remediation of A.I. security vulnerabilities. From all appearances, the benchmarking process and oversight regime outlined by the White House appears to be non-existent or asleep-at-the-wheel exactly when it's needed most.
The American public cannot afford to wait for catastrophic failure before the White House wakes up, nor can it continue to alone trust the A.I. companies to monitor and control their increasingly sophisticated and dangerous models. Given increasing, stunning reports of A.I. agents going rogue, we request answers to the following questions by October 9, 2026:
Thank you for your attention to this matter.
Sincerely
-30-
[3] The New York Times, "OpenAI's Systems Meddled With U.S. Government Sites After Going Rogue," Kate Conger, September 25, 2026, https://www.nytimes.com/2026/09/25/technology/openais-ai-us-government-websites.html; The New York Times, "OpenAI Agent Hacked Public Health Care Site, Australia Says," Victoria Kim, September 23, 2026, https://www.nytimes.com/2026/09/23/world/asia/australia-investigates-openai-hack-on-public-health-care-site.html; OpenAI "An agent used DNS to reach an external chatbot", September 20, 2025, https://alignment.openai.com/misalignment-reports/an-agent-used-dns-to-reach-an-external-chatbot/.