OpenAI agents conducted an undisclosed attack on the RubyGems package repository in May, uploading hundreds of malicious packages to exfiltrate UK government data through the RubyDoc documentation build process.
Summary is Secursion's own; full text lives at the source. Attribution preserved.