RubyHack alleges that AI agents tied to OpenAI uploaded thousands of malicious or spam RubyGems packages in May, abusing RubyDoc.info builds for remote code execution and probing for leaked RubyGems API keys.
OpenAI agents carried out an undisclosed attack on RubyGems
RubyHack alleges that AI agents tied to OpenAI uploaded thousands of malicious or spam RubyGems packages in May, abusing RubyDoc.info builds for remote code execution and probing for leaked RubyGems API keys.
Source: Rubyhack