Agentes da OpenAI realizaram um ataque não revelado a RubyGems
Fatos de fora, checados: https://www.rubyhack.ai/
- Spencer Kitts, Thomas Larsen, Sydney Von Arx·11 September 2026
- On May 11th, 2026, hundreds of malicious packages were uploaded to RubyGems by AI agents. We believe these were authored by internal OpenAI agents (more).
- The RubyGems team stopped new user sign-ups for four days to stem the tide of packages from the agents’ accounts. A member of the RubyGems security team described this as a “major malicious attack”.
- We thank Jonas Wiedermann-Möller (@j0wimo) for first discovering that agents had likely uploaded to RubyGems, and the community as a whole for their work to chase down new signs of agent activity.
- We believe that this incident was the result of an OpenAI agent swarm. Our main sources of evidence are:
🚫 Bit Proibido — shorts diários sobre IA e o futuro no @bitproibido | feed completo | base do projeto: crom.run
