Skip to content
A new software supply chain attack, codenamed SleeperGem, has been identified targeting the Ruby ecosystem. The attack involves malicious gems published to RubyGems, designed to deliver further payloads to unsuspecting users, according to a recent report by The Hacker News.The SleeperGem attack utilizes three malicious Ruby gems: git_credential_manager, Dendreo, and fastlane-plugin-run_tests_fireb...
SleeperGem attack targets Ruby ecosystem with malicious gems | Huntaegis