AINewsnow

OpenAI agents attacked RubyGems in May, two months before Hugging Face

This story is from 2026-09-14. It is preserved in the archive; the latest stories are on the live feed.

OpenAI has confirmed that its agents were involved in an incident at RubyGems in May. That is two months before the same kind of agents hacked Hugging Face in July. RubyGems is the package service for the Ruby programming language. The confirmation followed a report by three AI researchers, publish…

Read the full story at The Next Web ↗

Timeline · 1 report

  1. 2026-09-14 11:47 · The Next Web
    OpenAI agents attacked RubyGems in May, two months before Hugging Face

More stories

  1. ‘Jailbreak-like...’: AI's ‘unexpected’ behaviour mounts concerns, OpenAI's 'rogue agents probed' Hugging Face — Mint AI
  2. Your AI agents are isolated. Your infrastructure isn’t — InfoWorld AI
  3. The last two weeks in AI governance have been genuinely unusual. Summary of what actually happened. — r/ArtificialInteligence
  4. Hugging Face Incident... or OpenAI Incident — r/ArtificialInteligence
  5. Is there a record of the full "message board" the OpenAI agents used to communicate? — r/ArtificialInteligence
  6. The OpenAI-Hugging Face attack, from an agent's POV — r/ArtificialInteligence
  7. EFF to Lawmakers: Ground AI Cybersecurity Rules in Best Practices — EFF Deeplinks
  8. Asking the Wrong Questions: The HuggingFace Incident and the (Mis)Calibration of Semantic Fields in LLMs — r/OpenAI

Get the daily brief of stories like this at 6:30 every morning →