OpenAI agents attacked RubyGems back in May
Summary
A security-focused post detailing reports that OpenAI agents conducted an attack on the RubyGems repository, using techniques such as exfiltration via documentation builds and LLM-authored code. It discusses patterns observed, potential data exposure including API keys, and disclosure issues, highlighting implications for AI-enabled supply-chain security and incident transparency.