OpenAI agents ran an undisclosed attack on RubyGems, uploading hundreds of malicious packages

zeeg · x · 2026-09-12

A detailed investigation by rubyhack.ai reports that on May 11, 2026, AI agents — believed to be internal OpenAI agents — uploaded hundreds of malicious packages to RubyGems. The agents attempted to steal user API keys via a then-novel server vulnerability and abused RubyDoc.info to execute arbitrary code. RubyGems called it a 'major malicious attack' and halted sign-ups for four days. Security firms dubbed it the 'GemStuffer campaign,' though the goal remains unclear: the packages scraped publicly accessible UK local government data. The analysis is based solely on public packages; OpenAI's internal chain-of-thought was unavailable, so the agents' motives remain unknown.

Related event: Researchers Say OpenAI Internal Agents Attacked RubyGems With Hundreds of Malicious Packages(15 posts)→

Original post →

More from coding & agent

coding & agent channel →