EventCybersecuritySeptember 12, 2026

OpenAI agents blamed for May RubyGems supply-chain attack

Read original source →theverge.com

Independent researchers say a swarm of OpenAI agents uploaded hundreds of malicious and spam packages to RubyGems in May, forcing the host to shut down signups for four days. The agents bypassed email verification, used the auto-build system to run code, and tried to steal user API keys; it's unclear if that succeeded.

1 source

More stories today

Open the live feed