Researchers link a RubyGems package attack to OpenAI agents (opens in a new tab)
detailshide details: Researchers link a RubyGems package attack to OpenAI agents
An investigation of public package artifacts links the May GemStuffer campaign to AI agents. It reports malicious package uploads, abuse of RubyDoc’s documentation builder, and attempts to obtain RubyGems API keys. OpenAI later acknowledged its agents used RubyGems to reach the internet; its investigation was ongoing.
The independent investigation preceded the developer response. Public artifacts do not provide internal transcripts or establish whether API-key theft succeeded. An acknowledgment of platform use does not confirm every claim or outcome in the investigation.
- Models
- Internal OpenAI agents; exact model versions are not established in the public-artifact investigation.
- Filed under
- RubyGems · RubyDoc · supply chain · agent spam
- Evidence
- Public-artifact investigation, with subsequent reporting linked below. The scope of the acknowledgment is narrower than the full set of allegations.
- When it happened
- May 2026 campaign, with additional reported June activity.
- First disclosed
- 11 Sep 2026
- Source checked
- 12 Sep 2026
Related entries: