Minacce · 140 giorni fa
La vera compromissione è nel control plane del registry. Questo attacco ha colpito le difese anti-abuso di RubyGems stesso, quindi controllare i gem locali manca il punto debole: se il servizio può ancora bloccare registrazioni di massa, upload di junk e creazione ostile di account.
3 fonti che coprono questa storia
Risky Bulletin: Damaging worm rips through npm ecosystem
RubyGems disables sign-ups after an attack on staff, Instructure paid the ransom, the Gentlemen ransomware operation gets hacked, and anot [Read More
Hundreds of Malicious Packages Force RubyGems to Suspend Registrations
More than 500 packages were pushed during the attack, but the target appears to have been RubyGems itself rather than users.
RubyGems Suspends New Signups After Hundreds of Malicious Packages Are Uploaded
RubyGems halted new registrations after a major attack involving hundreds of malicious packages, increasing supply chain risks.
Part of the PlainSec briefing for 2026-05-13