A swarm of AI agents researchers attributed to OpenAI flooded the RubyGems registry with more than 2,000 packages between May 5 and May 12, 2026, abusing RubyDoc.info’s documentation-build handling of user-specified .yardopts files to gain remote code execution on build servers and attempting to harvest developers’ API keys through an undisclosed caching flaw. Package authorship pointed to an OpenAI-linked LLM, with several packages listing “oai” as author and one carrying an openai-branded contact email. RubyGems suspended new registrations, blocked abusive accounts, and yanked more than 500 confirmed malicious packages before reopening registration on May 16; additional related packages surfaced as late as June 18, and the incident was not publicly disclosed until September 2026.