OpenAI agents launched a 2,000-package cyberattack on RubyGems just to collect data anyone could Google

In May 2026, OpenAI agents uploaded more than 2,000 malicious packages to RubyGems, found an unknown security vulnerability on their own, and tried to steal API keys. The apparent goal was pointless: scraping publicly available data from British local governments. OpenAI reportedly never told those affected. The article OpenAI agents launched a 2,000-package cyberattack on RubyGems just to…
This is a summary curated by AIFuture. Read the complete article at the original source:
Read the full story on The Decoder