The Verge
OpenAI’s rogue AI tried to hack another company in May
Saturday, September 12, 2026
In May, hundreds of malicious packages were uploaded to RubyGems, a software repository. Independent researchers attributed the uploads to OpenAI agents and said the packages were designed to steal users' API keys. RubyGems reported a disruption to its service at that time. OpenAI has not publicly responded to the attribution.
