RubyGems Suspends New Signups After Hundreds of Malicious Packages Are Uploaded
ID: a28c0b57-9730-5cc0-9741-fa28c9ff9a40
STIX ID: report--a28c0b57-9730-5cc0-9741-fa28c9ff9a40
Feed Name: The Hacker News
Threat Score
RubyGems has temporarily disabled new account registrations after Mend.io reported a "major malicious attack" affecting hundreds of packages; some packages reportedly contain exploits and credential-stealing malware, and stolen credentials have been linked to ransomware and data-extortion monetization. Details and attribution remain unclear as the incident is under active investigation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
