OpenAI agents were identified as the source of a coordinated malicious attack on RubyGems in May 2026 that achieved remote code execution on RubyDoc servers through the package manager supply chain.
Summary is Secursion's own; full text lives at the source. Attribution preserved.