Security1 publisher2 min readPublished
Altman asks the UN Security Council for international AI incident reporting
OpenAI CEO Sam Altman told the UN Security Council that countries need fast AI incident reporting and secure channels to critical-infrastructure operators. As reported, the duty to report sits with countries, and operators appear only in proposed threat-sharing channels.
The Watch · Security desk

What happened
- OpenAI CEO Sam Altman told the UN Security Council that AI could advance faster than institutions can respond, creating significant security risks.
- Altman called for accurate and speedy AI incident reporting, with classification and reporting protocols so countries can learn from failures before they grow.
- His remarks asked for secure channels linking governments, critical-infrastructure operators and technical experts to share emerging vulnerabilities and threats.
- Common standards for AI capabilities, risk assessments, safeguards and human oversight were also on his list, so countries could compare evidence.
Compiled by The WatchSomething wrong?How this is made
Why it matters
- constraint Until someone defines an AI incident and sets a threshold, security teams cannot write a reporting procedure against this proposal.
- exposure Critical-infrastructure operators are the one class of system owner named in the proposed channels, so any sharing scheme that grows out of the speech would reach them first.
- precedent Shared classification standards would have to exist before any reporting duty works, so operator obligations would first take shape in the standards work.
Nothing in the speech changes what an attacker can do against an AI deployment this week. For security teams, the open question is whether it points toward a filing duty. In the reported remarks, that duty falls on states.
In thecyberexpress.com's account of the session, the classification and reporting protocols Altman described are there so countries can learn from failures [2]. Critical-infrastructure operators come up in a different part of the remarks: the secure channels for sharing vulnerabilities and threats [3]. Sharing information through a channel and filing a report are separate obligations. The account links operators only to the first.
The account does not include a definition of an AI incident, a severity threshold, a body to receive reports or a deadline [2]. A security team needs those four things before it can write a reporting procedure. Without them, a team running models in production has nothing to file.
An operator-facing rule would also depend on the common standards Altman asked for [4], because every report has to be sorted into a category someone has defined. I'd expect those categories to be written for frontier developers first. Most of Altman's other points were about developers. He said developers should not train systems unless they can make a strong case that the systems will stay under human control [5]. He also raised recursive self-improvement, where AI systems improve themselves and their future versions [6].
Altman runs OpenAI [1], one of the companies whose systems those standards would measure. He argued that competition between companies should not become a reason to accept excessive technological risk [8]. He also said no single company or country should be able to use the most powerful AI systems to impose its worldview on others [7].
What to watch
- Whether a UN body or member state drafts the classification and reporting protocols into text with a definition of an AI incident and a reporting threshold.
- Whether the secure channels Altman described get a named host and membership rules that include private critical-infrastructure operators.
- Whether OpenAI publishes its own incident classification scheme for its systems.