What a time to be alive – rouge AI agents attack RubyGems.org

tenderlovemaking.com

90 points by gregnavis 2 hours ago


Roark66 - 2 hours ago

There is nothing "rogue" about these agents. They were prompted to hack to get answers, there was a hole in their non air gapped sandbox and no system prompt that said "do not hack outside systems".

In short, it was intentional.

VyseofArcadia - an hour ago

How does this work, legally? I think that RubyGems could file a civil suit against OpenAI, but for a naïve non-lawyer reading this seems like a pretty clear cut criminal violation of the computer fraud and abuse act.

laserbeam - 8 minutes ago

There's no such thing as "OpenAI agents" attacked RubyGems. It's someone used agents to attack RubyGems. If they work at OpenAI then it's someone at OpenAI. And if they did it unintentionally, they still did it.

Analogy: if a someone's involved when a person dies, it's manslaughter or murder based on intent. They're different, but they're both crimes.

HelloUsername - an hour ago

Related

"OpenAI agents attacked RubyGems before Hugging Face incident (reuters.com)" 12.sep.2026 https://news.ycombinator.com/item?id=49669099

"OpenAI agents carried out an undisclosed attack on RubyGems (rubyhack.ai)" 11.sep.2026 https://news.ycombinator.com/item?id=49666735 597 comments

"RubyGems advisory: Possible leak of legacy API keys via improper cache config (rubygems.org)" 24.jul.2026 https://news.ycombinator.com/item?id=49030590

senda - 2 hours ago

Is the Kremlin technologically useless? How are we not seeing insane attacks on Ukraine via Agents?

Or is this largely a fabrication, in regards to the "who", in an attempt to garner more acclaim in the hope of sustaining funding.

kstrauser - 2 hours ago

Ah, the infamous Crimson Wave.

mauriciolange - 2 hours ago

rogue AI agents or AI agents coming from Moulin Rouge?

- 31 minutes ago
[deleted]
khalic - an hour ago

Oh my favorite typo, you can never go wrong with a little rouge

swiftcoder - an hour ago

> In other words, if you publish a gem on RubyGems.org, you can execute arbitrary code on RubyDoc.info.

Shades of the build.rs problem. We really need sandboxed builds in every language ecosystem at this point.

timdiggerm - an hour ago

We need a legal structure to make companies liable for the actions of the agents they've made.

sebmellen - an hour ago

Did the AI agents actually wear makeup? I’ve never heard of a rouge AI agent :P

onlyrealcuzzo - an hour ago

I've been wondering if AI will due to programming languages what advanced civilization did to human languages.

It's not just that AI can write Rust as well as Ruby if you ask nicely.

It's also all of these considerations as well.

I hope it doesn't happen, because there's a lot of great languages - I love Ruby so much - but it almost seems inevitable.

This is at the same time everyone and their mother is building their own programming language.

herbst - an hour ago

If you have weapons and a child. And you have that child unsupervised do their own thing with theoretical access to your weapons. Would we call it "child going rouge" if it decides to play with the weapons and shoot someone?

GaryBluto - an hour ago

I am confident that this is an attempt by OpenAI to try and force governments' hands to regulate AI. There is no other reason why OpenAI wouldn't immediately halt attacks like this and try to reverse the damage the moment they're aware of it. During the attack on DseWiki they evidently checked in numerous times but didn't decide to stop the agents until much later.

rougehuh - an hour ago

Rouge agents with Ruby? Checks out

As long as they’re not vert

12904927 - an hour ago

What a time to be alive? One of the most boring decades ever.

METR and others are advertisement arms for Big AI. These exploits could have been prompted by a human.

Since there is no bad news any longer and exploits are celebrated, they chose a target to boost both OpenAI and the Ruby AI sycophants.

Why is Ruby Gems such a mess? It seems as bad as PyPI now.

big-chungus4 - an hour ago

How does he know that this attack is performed by OpenAI agents? I couldn't figure this out from the article

HSO - 38 minutes ago

rouge agents, on tenderlovemaking.com

my what a time to be alive

sporritt - 2 hours ago

those pesky reds

McCarthy was right all along

ur-whale - an hour ago

Are "rouge" and "rogue" interchangeable words in American English?

philipwhiuk - 44 minutes ago

OpenAI's careless approach to sandboxing and minimal levels of monitoring appear to be positioning it increasingly as a substantial threat actor to the open source ecosystem:

* Hugging Face

* D Programming Language Wiki

* Ruby Gems

If I was a content provider for open source I'd be looking pre-emptively block OpenAI endpoints and keep a close eye on changes from new users to mitigate this sort of unapologetic drive-by attack which seems to be followed by marketing releases rather than a mea culpa with a proper RCA.

iAMkenough - 2 hours ago

I’m seeing red

Schlagbohrer - an hour ago

One agent set "oaibooty9217" as their username LOL

toasty228 - an hour ago

Wait until a blue one does it

ekorondy - 41 minutes ago

[flagged]

- an hour ago
[deleted]
sanghyunp - an hour ago

[dead]