{"id":195978,"date":"2025-10-07T19:47:09","date_gmt":"2025-10-07T19:47:09","guid":{"rendered":"https:\/\/www.newsbeep.com\/au\/195978\/"},"modified":"2025-10-07T19:47:09","modified_gmt":"2025-10-07T19:47:09","slug":"up-to-3000-flood-victims-details-have-been-given-to-chatgpt-what-does-that-mean-for-privacy","status":"publish","type":"post","link":"https:\/\/www.newsbeep.com\/au\/195978\/","title":{"rendered":"Up to 3,000 flood victims&#8217; details have been given to ChatGPT. What does that mean for privacy?"},"content":{"rendered":"<p class=\"paragraph_paragraph__iYReA\">A NSW government data breach exposing up to 3,000 people has raised questions about the risks artificial intelligence pose to personal security.<\/p>\n<p class=\"paragraph_paragraph__iYReA\">A contractor for the NSW Reconstruction Authority <a class=\"Link_link__kR0xA Link_link__5eL5m ScreenReaderOnly_srLinkHint__OysWz Link_showVisited__C1Fea Link_showFocus__ALyv2\" href=\"https:\/\/www.abc.net.au\/news\/2025-10-06\/data-breach-northern-rivers-resilient-homes-program-chatgpt\/105855284\" data-component=\"Link\" data-uri=\"coremedia:\/\/article\/105855284\" rel=\"nofollow noopener\" target=\"_blank\">uploaded the names, contact details and personal information<\/a>, including health information, of people connected to a flood recovery program to ChatGPT in March.<\/p>\n<p class=\"paragraph_paragraph__iYReA\">So can private information uploaded to artificial intelligence platforms be found by other users? We asked experts in AI, data and cyber security to explain.<\/p>\n<p>What has happened to the data?<\/p>\n<p class=\"paragraph_paragraph__iYReA\">It is hard to know for sure, but it is possible data from the breach was included in the information used to train ChatGPT.<\/p>\n<p class=\"paragraph_paragraph__iYReA\">Queensland University of Technology senior research fellow in AI accountability Aaron Snoswell said companies such as OpenAI, which owned ChatGPT, trained and updated their AI models every few months to improve the software.<\/p>\n<p><img decoding=\"async\" alt=\"weatherboard two storey home with mesh security fence around it with Northern Rivers Reconstruction Corporation signage \" class=\"Image_image__5tFYM ContentImage_image__DQ_cq\"  src=\"https:\/\/www.newsbeep.com\/au\/wp-content\/uploads\/2025\/10\/111081cc77404a74d6468c7113c10799\" loading=\"lazy\" data-component=\"Image\" data-lazy=\"true\"\/><\/p>\n<p class=\"Typography_base__sj2RP FigureCaption_text__zDxQ5 Typography_sizeMobile12__w_FPC Typography_lineHeightMobile20___U7Vr Typography_regular__WeIG6 Typography_colourInherit__dfnUx\" data-component=\"Typography\">Applicants in a NSW government housing buyback scheme have been affected by a data breach. (ABC North Coast: Bronwyn Herbert)<\/p>\n<p class=\"paragraph_paragraph__iYReA\">The companies use an enormous amount of data to do that, including user data \u2014 unless users have opted out.<\/p>\n<p class=\"paragraph_paragraph__iYReA\">&#8220;They use a bunch of mathematics to try to force these models to try to appear intelligent by mimicking what it sees in that collection of data,&#8221; Dr Snoswell said.<\/p>\n<p class=\"paragraph_paragraph__iYReA\">CSIRO&#8217;s Data61 senior research scientist Chamikara Mahawaga Arachchige (M.A.P. Chamikara) said if personal information was inadvertently included in the training information, there was a small chance it could influence the system.<\/p>\n<p class=\"paragraph_paragraph__iYReA\">The risk would be if other users tried to track down that information by asking ChatGPT to share it.<\/p>\n<p class=\"paragraph_paragraph__iYReA\">&#8220;There is an area called prompt inject, where you try to manipulate your simple prompts into sophisticated prompts so that these models tend to reveal sensitive information,&#8221; Dr M.A.P. Chamikara said.<\/p>\n<p>Can the data be found on ChatGPT?<\/p>\n<p class=\"paragraph_paragraph__iYReA\">Assuming the data breach information was used in ChatGPT training material (though that is not certain), Dr Snoswell said it was possible someone who asked could receive it.<\/p>\n<p class=\"paragraph_paragraph__iYReA\">But Dr Snoswell said AI models did not store data in the way files were saved on a computer due to the huge amounts of information they had to process.<\/p>\n<p class=\"paragraph_paragraph__iYReA\">&#8220;It&#8217;s much more like a statistical soup of approximations,&#8221; he said.<\/p>\n<p class=\"paragraph_paragraph__iYReA\">So if you ask ChaptGPT for personal information, it will likely provide an answer \u2014 but that does not mean it will be accurate.<\/p>\n<p><a href=\"https:\/\/www.abc.net.au\/news\/2025-10-05\/artificial-intelligence-law-robot-legal-judge-jury-ai\/105545900\" data-component=\"FullBleedLink\" class=\"RelatedCard_link__rsgR9 FullBleedLink_root__lTw_U interactive_focusContext__yRhc_ interactive_defaults__AKxUU FullBleedLink_showVisited__g3Xvz\" rel=\"nofollow noopener\" target=\"_blank\">Will AI undermine justice?<\/a><\/p>\n<p class=\"Typography_base__sj2RP RelatedCard_synopsis__cFwMW Typography_sizeMobile14__u7TGe Typography_lineHeightMobile20___U7Vr Typography_regular__WeIG6 Typography_colourInherit__dfnUx\" data-component=\"Typography\">Artificial intelligence is coming for the law. Are we ready for robots to become judge and jury?<\/p>\n<p class=\"paragraph_paragraph__iYReA\">&#8220;These models tend to try and please the user,&#8221; Dr Snowell said.<\/p>\n<p class=\"paragraph_paragraph__iYReA\">&#8220;It&#8217;s called sycophancy \u2014 it&#8217;s a known problem with these models.<\/p>\n<p class=\"paragraph_paragraph__iYReA\">&#8220;They will try and comply with your request even if that means making things up.<\/p>\n<p class=\"paragraph_paragraph__iYReA\">&#8220;You wouldn&#8217;t be able to trust what it says, necessarily.&#8221;<\/p>\n<p>How serious is this kind of breach?<\/p>\n<p class=\"paragraph_paragraph__iYReA\">Australia, like much of the world, has seen several significant data breaches over the last few years. Think <a class=\"Link_link__kR0xA Link_link__5eL5m ScreenReaderOnly_srLinkHint__OysWz Link_showVisited__C1Fea Link_showFocus__ALyv2\" href=\"https:\/\/www.abc.net.au\/news\/2024-06-20\/optus-hack\/104002682\" data-component=\"Link\" data-uri=\"coremedia:\/\/article\/104002682\" rel=\"nofollow noopener\" target=\"_blank\">Optus<\/a> and <a class=\"Link_link__kR0xA Link_link__5eL5m ScreenReaderOnly_srLinkHint__OysWz Link_showVisited__C1Fea Link_showFocus__ALyv2\" href=\"https:\/\/www.abc.net.au\/news\/2024-06-22\/medibank-alerts-australia-cybersecurity-breach\/104003576\" data-component=\"Link\" data-uri=\"coremedia:\/\/article\/104003576\" rel=\"nofollow noopener\" target=\"_blank\">Medibank<\/a>.<\/p>\n<p class=\"paragraph_paragraph__iYReA\">Dr Snoswell said the Reconstruction Authority breach appeared to have been accidental, not malicious.<\/p>\n<p class=\"paragraph_paragraph__iYReA\">&#8220;The data has been uploaded to one unauthorised third party, rather than stolen by someone maliciously and then sold on to other parties or maybe [used in] a ransom situation,&#8221; he said.<\/p>\n<p><img decoding=\"async\" alt=\"Aerial view of several homes sumberged in brown flood waters\" class=\"Image_image__5tFYM ContentImage_image__DQ_cq\"  src=\"https:\/\/www.newsbeep.com\/au\/wp-content\/uploads\/2025\/10\/a8db5be9ac7f787e009ed309a35ac592\" loading=\"lazy\" data-component=\"Image\" data-lazy=\"true\"\/><\/p>\n<p class=\"Typography_base__sj2RP FigureCaption_text__zDxQ5 Typography_sizeMobile12__w_FPC Typography_lineHeightMobile20___U7Vr Typography_regular__WeIG6 Typography_colourInherit__dfnUx\" data-component=\"Typography\">The NSW Reconstruction Authority&#8217;s program is helping people recover from floods in 2022. (Supplied: Rotor Wing)<\/p>\n<p class=\"paragraph_paragraph__iYReA\">According to Dr M.A.P. Chamikara, the worst-case scenario would be if the data was seen by someone who was in a position to copy it.<\/p>\n<p class=\"paragraph_paragraph__iYReA\">&#8220;If it was copied elsewhere \u2026 it could be used for scams or identity theft.<\/p>\n<p class=\"paragraph_paragraph__iYReA\">&#8220;While that seems unlikely here, we have to assume some risks remain.&#8221;<\/p>\n<p>What should concerned people do?<\/p>\n<p class=\"paragraph_paragraph__iYReA\">People included in this data breach will be contacted by the NSW Reconstruction Authority in the coming week.<\/p>\n<p class=\"paragraph_paragraph__iYReA\">The authority said it was working with Cyber Security NSW to monitor the internet and dark web to determine whether any of the information was accessible online.<\/p>\n<p class=\"paragraph_paragraph__iYReA\">\u00a0But it said, at this stage, there was no evidence it had been accessed by a third party.<\/p>\n<p class=\"paragraph_paragraph__iYReA\">A government agency called ID Support NSW also provides expert advice, free resources and personalised support for people affected by data breaches.<\/p>\n<p><img decoding=\"async\" alt=\"Potential fraud phone call on mobile screen\" class=\"Image_image__5tFYM ContentImage_image__DQ_cq\"  src=\"https:\/\/www.newsbeep.com\/au\/wp-content\/uploads\/2025\/10\/05c81bd99fd12d38d02e43cd7d7952d0\" loading=\"lazy\" data-component=\"Image\" data-lazy=\"true\"\/><\/p>\n<p class=\"Typography_base__sj2RP FigureCaption_text__zDxQ5 Typography_sizeMobile12__w_FPC Typography_lineHeightMobile20___U7Vr Typography_regular__WeIG6 Typography_colourInherit__dfnUx\" data-component=\"Typography\">People with compromised data should to stay alert for possible scams. (ABC North West Queensland: Kemii Maguire)<\/p>\n<p class=\"paragraph_paragraph__iYReA\">Dr M.A.P. Chamikara said it was always a good idea to take some broader precautions.<\/p>\n<p class=\"paragraph_paragraph__iYReA\">&#8220;Change passwords, enable two-factor authentication to the services they are involved with,&#8221; he said.<\/p>\n<p class=\"paragraph_paragraph__iYReA\">&#8220;Watch for suspicious emails, calls or messages [and] never click on the links available in these emails or messages. Keep an eye on bank or credit activities, whether there are any surprises.<\/p>\n<p class=\"paragraph_paragraph__iYReA\">&#8220;Those steps go a long way to staying safe.&#8221;<\/p>\n<p class=\"paragraph_paragraph__iYReA\">In terms of using AI software, Dr M.A.P. Chamikara said it was important to treat these services as if they were public forums.<\/p>\n<p class=\"paragraph_paragraph__iYReA\">&#8220;Don&#8217;t trust these kind of services as if they&#8217;re your buddy,&#8221; he said.<\/p>\n<p>Can data be removed from ChatGPT?<\/p>\n<p class=\"paragraph_paragraph__iYReA\">Yes.<\/p>\n<p class=\"paragraph_paragraph__iYReA\">OpenAI has a function allowing users to ask for their personal data to be removed from ChatGPT.<\/p>\n<p class=\"paragraph_paragraph__iYReA\">If you have evidence suggesting your personal data has been inadvertently captured, you can search for the OpenAI privacy centre and make a personal data removal request.<\/p>\n<p class=\"paragraph_paragraph__iYReA\">&#8220;They&#8217;ll do their best to remove that data, potentially \u2014 but the catch here is that here in Australia, our data laws are not as strong as some other countries,&#8221; Dr Snoswell said.<\/p>\n","protected":false},"excerpt":{"rendered":"A NSW government data breach exposing up to 3,000 people has raised questions about the risks artificial intelligence&hellip;\n","protected":false},"author":2,"featured_media":195979,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[20],"tags":[256,254,255,64,63,121698,5004,121695,14279,81143,123380,123382,40797,123381,105],"class_list":{"0":"post-195978","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-artificial-intelligence","8":"tag-ai","9":"tag-artificial-intelligence","10":"tag-artificialintelligence","11":"tag-au","12":"tag-australia","13":"tag-buyback-scheme","14":"tag-chatgpt","15":"tag-cyber-security-nsw","16":"tag-data-breach","17":"tag-flood-victims","18":"tag-nsw-ra","19":"tag-open-source-ai","20":"tag-reconstruction-authority","21":"tag-resilient-homes","22":"tag-technology"},"_links":{"self":[{"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/posts\/195978","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/comments?post=195978"}],"version-history":[{"count":0,"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/posts\/195978\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/media\/195979"}],"wp:attachment":[{"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/media?parent=195978"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/categories?post=195978"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/tags?post=195978"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}