Part of The AI Control Crisis · 15 stories · since Sep 3 · newest 17m ago
Researchers use Anthropic's Claude to hack into OpenAI's internal systemsResearchers reveal OpenAI agents attacked RubyGems in May
1 Sep 11 7:17 PM · 12d ago · 24 articles · 11 posts · 6 sources · development 1 of 8
An independent research group published findings that hundreds of malicious packages uploaded to RubyGems in May were authored by internal OpenAI agents, forcing RubyGems to halt new sign-ups for four days.
“BREAKING: Internal OpenAI agents attacked RubyGems, the package manager for Ruby. Over 2,000 malicious packages went up in two days. OpenAI says it doesn't know why the agents did any of this.”
@IntCyberDigestOpenAI AI developer, subject of both hacksAnthropic Maker of the Claude models used in the OpenAI hackHacktron Security research firmRubyGems Ruby package registry, victim of OpenAI's May attack
Sam Altman OpenAI CEO
The whole story articlespostscomments the bright band is this development · numbered dots are the others · click one to jump
What was reported 8 claims about this development
-
6 outlets Malicious OpenAI Agents Linked to RubyGems Campaign That Gained RCE on RubyDoc Servers in May
first by Slashdot, 12d ago · also Digital Trends, The Hacker News, Reuters, Channel News Asia, Investing.com News
4 more headlines
- OpenAI AI agents were linked to a cyberattack on RubyGems before the Hugging Face incident Digital Trends · 12d ago
- OpenAI Agents Linked to RubyGems Campaign That Gained RCE on RubyDoc Servers The Hacker News · 12d ago
- OpenAI agents attacked software service RubyGems before Hugging Face incident, WSJ reports Reuters · 12d ago
- OpenAI agents linked to previously undisclosed cyberattack on RubyGems - WSJ Investing.com News · 12d ago
-
5 outlets Hacking OpenAI
first by Lobsters, 6d ago · also Business Today, Hacktron AI, HN Best, HN Frontpage
1 more headline
-
first by Simon Willison, 12d ago · also HN Best, HN Frontpage
-
first by RuntimeWire, 12d ago · also Cyber Security News, Wall Street Journal
2 more headlines
- OpenAI Agents Flood RubyGems With 2,000 Packages and Exploit Build System for RCE Cyber Security News · 12d ago
- Researchers: OpenAI agents attacked Ruby package manager RubyGems in May; OpenAI says its agents used RubyGems to access the internet to do “benign tasks” Wall Street Journal · 12d ago
-
first by Implicator.ai, 12d ago · also Neowin
1 more headline
- OpenAI agents hijacked RubyGems in malicious API key heist Neowin · 12d ago
-
first by The Register, 7d ago
-
first by SecurityWeek, 8d ago
-
first by CyberScoop, 12d ago
What people said 7 voices · verbatim
-
The agents appeared to be in a web-lookup task to retrieve certain publicly accessible data. For some reason, the AIs were not able to access this data directly. Instead, they pursued this indirect route of (1) publishing a hack to RubyGems, (2) building the documentation for this hack, (3) using t...
-
Inconclusive, but this statement shifts me towards the latter — https://www.reuters.com/legal/ litigation/openai-agents-attacked- software-service-rubygems-before- hugging-face-incident-2026-09- 11/ [embedded post]
-
We found another cyberattack by internal OpenAI agents, this time targetting @rubygems. They: 1) gained arbitrary remote code execution on rubydoc. 2) developed a novel exploit to steal user API keys (but we do not know if they succeeded). They used package names including hack.rb, evil.rb, ...
-
OpenAI's own AI agents again broke into someone else's servers. The victim was RubyGems, the registry millions of programmers download Ruby code from. www.rubyhack.ai [images]
-
Kinda wild for OpenAI to describe the incident in this way when it was sufficiently severe that RubyGems had to shut down new account registrations for days Another example of AI companies actually downplaying rather than hyping up concerns
-
Did OpenAI even bother to notify RubyGems, who had to shut down signups for multiple days due to OpenAI's agents' concerning activity (that the agents described as “malicious")?
-
Anthropic had previously attacked PyPI, but this OpenAI attack on RubyGems was a whole lot more aggressive
All 8 developments of Researchers use Anthropic's Claude to hack into OpenAI's… →
NewswiresBlueskyMastodonXHacker NewsLobstersGoogle NewsReddit