{"id":889228,"date":"2026-09-12T10:10:12","date_gmt":"2026-09-12T10:10:12","guid":{"rendered":"https:\/\/www.newsbeep.com\/au\/889228\/"},"modified":"2026-09-12T10:10:12","modified_gmt":"2026-09-12T10:10:12","slug":"openai-agents-attacked-software-service-rubygems-before-hugging-face-hack","status":"publish","type":"post","link":"https:\/\/www.newsbeep.com\/au\/889228\/","title":{"rendered":"OpenAI agents attacked software service RubyGems before Hugging Face hack"},"content":{"rendered":"<p class=\"paragraph_paragraph___QITb\">AI agents being tested by OpenAI attacked software service RubyGems two months before they hacked open-source platform Hugging Face, researchers say.<\/p>\n<p class=\"paragraph_paragraph___QITb\">It is the latest revelation of cyber attacks that have spooked the public and spurred calls for tighter regulation.<\/p>\n<p class=\"paragraph_paragraph___QITb\">Many incidents involving agents hacking or attempting to access external systems have heightened concerns over the increasing capacity of AI models and developers&#8217; ability to contain them.<\/p>\n<p class=\"paragraph_paragraph___QITb\">The latest revelation also comes as growing numbers of US lawmakers call for new rules to govern AI systems after <a class=\"Link_link__kR0xA Link_link__5eL5m ScreenReaderOnly_srLinkHint__OysWz Link_showVisited__C1Fea Link_showFocus__ALyv2\" href=\"https:\/\/www.abc.net.au\/news\/2026-09-09\/anthropic-researcher-coxon-quits-over-human-threat\/107134164\" data-component=\"Link\" data-uri=\"coremedia:\/\/article\/107134164\" rel=\"nofollow noopener\" target=\"_blank\">dire warnings from two Anthropic researchers that rapidly progressing AI could lead to the extinction of the human race<\/a> in the not-too-distant future.<\/p>\n<p><a href=\"https:\/\/www.abc.net.au\/news\/2026-09-11\/how-openai-agents-hacked-hugging-face-messages-revealed\/107125126\" data-component=\"FullBleedLink\" class=\"RelatedCard_link__rsgR9 FullBleedLink_root__lTw_U interactive_focusContext__yRhc_ interactive_defaults__AKxUU FullBleedLink_showVisited__g3Xvz\" rel=\"nofollow noopener\" target=\"_blank\">How AI agents swarmed another company<\/a><\/p>\n<p class=\"Typography_base__sj2RP RelatedCard_synopsis__cFwMW Typography_sizeMobile14__u7TGe Typography_lineHeightMobile20___U7Vr Typography_regular__WeIG6 Typography_colourInherit__dfnUx\" data-component=\"Typography\">Tens of thousands of messages from hundreds of rogue OpenAI agents reveal how the self-described &#8220;collective&#8221; coordinated the attack on AI infrastructure company Hugging Face.<\/p>\n<p class=\"paragraph_paragraph___QITb\">AI agents uploaded hundreds of malicious packages to RubyGems on May 11, according to a group of researchers who posted their findings online on Friday, local time, saying they believed &#8220;these were authored by internal OpenAI agents&#8221;.<\/p>\n<p class=\"paragraph_paragraph___QITb\">OpenAI confirmed the incident.<\/p>\n<p class=\"paragraph_paragraph___QITb\">&#8220;Based on our review, our agents used the RubyGems platform to access the internet to carry out benign tasks and retrieve public information,&#8221; a spokesperson said in a statement.<\/p>\n<p class=\"paragraph_paragraph___QITb\">&#8220;We&#8217;ll continue to investigate as part of our broader review of agent activity during training and evaluation.&#8221;<\/p>\n<p class=\"paragraph_paragraph___QITb\">The agents, which are generally assigned tasks such as creating reports or filling out spreadsheets, appear to have used RubyGems to access publicly available data as part of a training run, according to OpenAI.<\/p>\n<p class=\"paragraph_paragraph___QITb\">The developer said it had been in touch with RubyGems to review the incident.<\/p>\n<p>Latest revelation of attacks by AI agents<\/p>\n<p class=\"paragraph_paragraph___QITb\">IPO-bound rival Anthropic has also reported a string of attacks by its agents. This week it disclosed a fourth instance of an AI model hacking external systems during testing.<\/p>\n<p class=\"paragraph_paragraph___QITb\">For OpenAI, which is also gearing up for an IPO, the RubyGems attack would mark at least the third major instance of OpenAI agents attacking another company&#8217;s infrastructure.<\/p>\n<p class=\"paragraph_paragraph___QITb\">A swarm of OpenAI agents previously hijacked a German-language wiki site and turned it into an improvised messaging platform for cheating on tests.<\/p>\n<p><img decoding=\"async\" alt=\"A dark-haired man in a suit looks over his shoulder.\" class=\"Image_image__5tFYM ContentImage_image__DQ_cq\"  src=\"https:\/\/www.newsbeep.com\/au\/wp-content\/uploads\/2026\/09\/c80fceca60586380e2dab706ae50a990.jpeg\" loading=\"lazy\" data-component=\"Image\" data-lazy=\"true\"\/><\/p>\n<p class=\"Typography_base__sj2RP FigureCaption_text__zDxQ5 Typography_sizeMobile12__w_FPC Typography_lineHeightMobile20___U7Vr Typography_regular__WeIG6 Typography_colourInherit__dfnUx\" data-component=\"Typography\">Sam Altman is the CEO of OpenAI. Its agents have gone rogue in a number of incidents.<\/p>\n<p>\u00a0 (Reuters: Manuel Orbegozo)<\/p>\n<p class=\"paragraph_paragraph___QITb\">OpenAI kept that incident secret as it dealt with the fallout from <a class=\"Link_link__kR0xA Link_link__5eL5m ScreenReaderOnly_srLinkHint__OysWz Link_showVisited__C1Fea Link_showFocus__ALyv2\" href=\"https:\/\/www.abc.net.au\/news\/2026-09-11\/how-openai-agents-hacked-hugging-face-messages-revealed\/107125126\" data-component=\"Link\" data-uri=\"coremedia:\/\/article\/107125126\" rel=\"nofollow noopener\" target=\"_blank\">the July hack of the open-source repository Hugging Face<\/a>.<\/p>\n<p class=\"paragraph_paragraph___QITb\">In May AI agents tried to steal RubyGems user credentials by exploiting a previously unknown vulnerability in the site&#8217;s servers, though it is unclear whether the attempt succeeded, the researchers said.<\/p>\n<p class=\"paragraph_paragraph___QITb\">The agents also exploited RubyDoc.info, a site that generates code documentation, to run their own code on its servers, the researchers added.<\/p>\n<p class=\"paragraph_paragraph___QITb\">AI researchers Spencer Kitts, Thomas Larsen and Sydney Von Arx said it was not clear why the AI agents chose this strategy or whether it was successful.<\/p>\n<p class=\"paragraph_paragraph___QITb\">In a blog post on Friday, RubyGems said its own investigation found no evidence the attempts succeeded.<\/p>\n<p class=\"paragraph_paragraph___QITb\">It said the company could not determine whether the packages in the &#8220;spam-publishing campaign&#8221; were created or published by AI agents.<\/p>\n<p class=\"paragraph_paragraph___QITb\">A member of RubyGems&#8217; security team described the incident, which forced the company to temporarily pause new account registrations, as a &#8220;major malicious attack&#8221;.<\/p>\n<p class=\"paragraph_paragraph___QITb\">The Wall Street Journal first reported the RubyGems incident on Friday.<\/p>\n<p class=\"paragraph_paragraph___QITb\">Reuters<\/p>\n","protected":false},"excerpt":{"rendered":"AI agents being tested by OpenAI attacked software service RubyGems two months before they hacked open-source platform Hugging&hellip;\n","protected":false},"author":2,"featured_media":889229,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[20],"tags":[256,458876,458875,2729,254,255,64,63,168759,5044,458874,105,458877],"class_list":["post-889228","post","type-post","status-publish","format-standard","has-post-thumbnail","category-artificial-intelligence","tag-ai","tag-ai-cyberattacks","tag-ai-sandbox","tag-anthropic","tag-artificial-intelligence","tag-artificialintelligence","tag-au","tag-australia","tag-hugging-face","tag-openai","tag-rubygems","tag-technology","tag-will-ai-destroy-humans"],"_links":{"self":[{"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/posts\/889228","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/comments?post=889228"}],"version-history":[{"count":0,"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/posts\/889228\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/media\/889229"}],"wp:attachment":[{"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/media?parent=889228"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/categories?post=889228"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/tags?post=889228"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}