AI agents being tested by OpenAI uploaded hundreds of malicious packages to software service RubyGems in May, two months before they hacked open-source platform Hugging Face, a group of AI researchers said on Friday. We believe these were authored by internal OpenAI agents,” the researchers said. OpenAI confirmed the incident to the Wall Street Journal, which first reported it earlier on Friday.
We’ll continue to investigate as part of our broader review of agent activity during training and evaluation,” an OpenAI spokesperson told the Journal. OpenAI did not immediately respond to a request for comment. RubyGems could not immediately be reached. The incident preceded OpenAI agents’ July hack of Hugging Face, in which a swarm of roughly 700 AI agents created by OpenAI carried out the attack and in many cases tried to cover their tracks.
Extract — continue reading at the source.