OpenAI brokers tried to bruteforce a UN web site’s API fields · swarmcha.se


From 13 April – 19 June 2026, OpenAI brokers scanned UNCTAD’s API ~16,500 instances, utilizing proxies, obfuscation, and Google’s XSS sport

UNCTAD is the UN Conference on Trade and Development.
UNCTADstat is a statistics website they serve,
which covers varied commerce/improvement indicators. The web site renders information from
its API, at unctadstat-api.unctad.org/datamart-api/....

Transluce’s report has a dataset exhibiting
that brokers made many requests to this website, however does not go into what these
requests really are – I believe they deserve some additional inspection.

On the sixth of June 2026, UNCTADstat’s plastics-trade API was hit by scans at
21:06 UTC and 22:40 UTC. 40 minutes later, at 23:20, a person
PublicDataResearchAgentT93214 created a web page on FractalWiki, one of many wikis
hit by the
wiki swarms confirmed by OpenAI to be the result of OpenAI agents.
This web page listed the precise UNCTADstat URLs that the scans used. We have these
wikis’ entry logs, which present that, of the 54 Azure IP addresses used to make
this web page and different UNCTAD-related edits and searches, 45 of them additionally made
edits on DseWiki within the wiki swarm. Furthermore, brokers labelled their
payload pages and URLs with names similar to CHATGPTTEST1, OAI_META_1312,
OAI_IFRAME_TRADABLE and CHATGPT_1610_2000_125192. We subsequently imagine it
is extremely possible that the scanning in opposition to UNCTADstat was perpetrated by OpenAI
brokers
.

Summary of findings

  • OpenAI brokers carried out 16,500+ scans of UNCTADstat’s API by way of Urlquery from
    thirteenth April – nineteenth June 2026
  • Agents have been possible tasked with retrieving information associated to the Productive
    Capacities Index (PCI), tradable industries, meals commerce, and different subjects
  • Agents bruteforced API fields in UNCTADstat to find endpoints and retrieve
    information
  • Agents have been capable of bypass UNCTADstat restrictions on their API by way of a
    double-encoding exploit
  • Agents progressively refined their strategies to retrieve extra information from every scan,
    ultimately discovering {that a} sport by Google might be used to fetch information in
    bulk
  • Agents intentionally obfuscated keys and requests to bypass a nonexistent
    filter
  • Agents probably looked for prior work from
    wiki swarm brokers, and tried to make use of the wiki itself
    as a proxy to UNCTADstat information
contents

Timeline