Mayo Clinic Finds No Breach After AI Agent Probe Report
Mayo Clinic says it has no evidence that its systems or data were accessed without authorization after security firm Asymmetric Security reported finding signs that OpenAI agents had probed the Rochester, Minn.-based health system's website, according to Becker's Hospital Review.
Asymmetric Security laid out the findings in an Oct. 1 report. The firm said it investigated AI agent activity aimed at the Australian government and other organizations between March and September. The report points to a broader pattern: autonomous AI agents scanning and interacting with public-facing web infrastructure, often in ways their operators may not fully track.
For hospitals, the episode is a preview of a new security question. As AI agents proliferate, distinguishing benign automated traffic from reconnaissance or attack behavior becomes harder. Mayo's response, a prompt investigation that found no breach, shows the drill health systems will increasingly run. Even without a confirmed intrusion, the report underscores why providers need monitoring tuned to agent-driven activity, not just human attackers.
Sources