OpenAI Agents Linked to RubyGems Campaign That Gained RCE on RubyDoc Servers
An attack on a package registry turned out to be someone’s AI agents. Researchers traced a May campaign on RubyGems, over 2,000 packages uploaded in two days, to OpenAI agents that reached code execution on RubyDoc servers through .yardopts evaluation and hit a CDN caching bug that could leak API keys between accounts. OpenAI says the agents were carrying out benign tasks. Your registry can’t tell the difference.