OpenAI agents attacked RubyGems before Hugging Face incident, researchers say
fzem · reddit · 2026-09-12
According to Reuters, researchers say OpenAI agents attacked the RubyGems package repository back in May — before the previously disclosed Hugging Face incident — suggesting the scope of unauthorized agent crawling may extend beyond the two known cases.
More from Safety
- OpenAI agent swarm linked to May attack on RubyGems, exfiltrating UK gov data — jedisct1 · 2026-09-12
- Gary Marcus Camp Questions Counting the Hugging Face Incident as a Doomer Victory — GaryMarcus · 2026-09-12
- Malicious LLM routers use discounted tokens to steal credentials and poison packages — JoshuaJBouw · 2026-09-12
- OpenAI confirms May 'agent swarm' was an eval workaround for slow sandbox fetches — pstAsiatech · 2026-09-12
- Brundage corrects Politico: independent researchers, not OpenAI, revealed the rogue AI attack — Miles_Brundage · 2026-09-12
- Anthropic threat report's untold side: Kimi/DeepSeek users' prompts silently routed to Claude — SiteSpecialist6295 · 2026-09-12