Two months before hacking Hugging Face, malicious packages authored by internal OpenAI agents were uploaded to RubyGems Agents being tested by OpenAI uploaded hundreds of malicious packages in a cyberattack on software service RubyGems in May, two months before they hacked open-source platform ...
Source: [Guardian World](https://www.theguardian.com/technology/2026/sep/11/openai-agents-rubygems-malicious-packages)