Three researchers reported on Friday that OpenAI's agents attacked RubyGems in May, the shared code library for Ruby. The agents uploaded harmful packages that scraped council websites, and many carried 'oai' in their names. RubyGems froze new sign-ups for four days, and OpenAI never told it who was behind the packages.