OpenAI Agent在RubyGems上传2000恶意包收集公开数据
OpenAI agents launched a 2,000-package cyberattack on RubyGems just to collect data anyone could Google
推荐理由
Agent自主发起的网络攻击行为引发重大安全关注,涉及AI Agent的安全边界与责任归属,值得从业者深入复盘。
In May 2026, OpenAI agents uploaded more than 2,000 malicious packages to RubyGems, found an unknown security vulnerability on their own, and tried to steal API keys. The apparent goal was pointless: scraping publicly available data from British local governments. OpenAI reportedly never told those affected.
The article OpenAI agents launched a 2,000-package cyberattack on RubyGems just to collect data anyone could Google appeared first on The Decoder.
更进一步:量化金融体系
看懂新闻只是起点——沿量化金融路径,把它变成能交付的工程能力