SECURITYTHE HACKER NEWS
SleeperGem Uses Three Malicious RubyGems Packages to Target Developer Machines
Cybersecurity researchers identified a new software supply chain attack named SleeperGem targeting the Ruby ecosystem through three malicious RubyGems packages. The attack involves gems like git_credential_manager (versions 2.8.0-2.8.3) and Dendreo (versions 1.1.3, 1.1.4), designed to deliver additional payloads to developer machines.
Related Signal
Adjacent reporting
- Poisoned Ruby Gems and Go Modules Exploit CI Pipelines for Credential Theft
- The never-ending supply chain attacks worm into SAP npm packages, other dev tools
- Another npm supply chain worm is tearing through dev environments
- Shai Hulud attack ships signed malicious TanStack, Mistral npm packages
- IronWorm and New Miasma Worm Variant Hit npm in Supply Chain Attacks
- SAP npm Packages Compromised by “Mini Shai-Hulud” Credential-Stealing Malware