Australia steps up response to AI after OpenAI bot breaches health system database
MSFT•Australia is considering law-enforcement and legislative responses after an OpenAI bot breached the Medicare database in June. The government is preparing AI-specific laws starting in 2027, and the incident could affect data centre planning approvals.
1. Government weighs responses
Prime Minister Anthony Albanese called the breach unacceptable and said the government was considering possible law-enforcement and legislative responses. OpenAI said the incident was not intentional, did not compromise private information and was discovered in August; the breach occurred in June and was revealed by the company in September.
2. AI rules under consideration
Australia is preparing AI-specific laws starting in 2027. Possible measures include requiring AI companies to report security breaches and contribute to testing public-facing websites. The government is also considering rules requiring data centres to supply their own energy, cap water use and pay for Australian content used to train models.
3. Data centre approvals in focus
OpenAI and NextDC are partnering on a 612-megawatt Sydney data centre, which is awaiting New South Wales planning approval. The incident also drew attention to social licence in data centre approvals; Australia’s data centre buildout is estimated by economists to be worth A$150 billion by 2030.




