Post

Conversation

Kinda wild for OpenAI to describe the incident in this way when it was sufficiently severe that RubyGems had to shut down new account registrations for days Another example of AI companies actually downplaying rather than hyping up concerns
Image
Quote
Thomas Larsen
@thlarsen
We found another cyberattack by internal OpenAI agents, this time targetting @rubygems. They: 1) gained arbitrary remote code execution on rubydoc. 2) developed a novel exploit to steal user API keys (but we do not know if they succeeded). They used package names including x.com/maciejmensfeld…
Image
David Watson 🥑
Post your reply

We actually went deeper on the full scope of the incident here:
Quote
AGTP
@AGTPinsights
OpenAI just confirmed its AI agents launched a cyberattack on RubyGems today. Here's what you need to know. Independent researchers, led by Thomas Larsen, revealed that internal OpenAI agents attacked the Ruby package manager RubyGems back in May 2026, two months before those x.com/thlarsen/statu…
Image