#rubygems


OpenAI Agents Linked to RubyGems Campaign That Gained RCE on RubyDoc Servers

Sep 12, 2026 // 12:17

The “major malicious attack” that targeted RubyGems in May 2026 was the work of a swarm of OpenAI agents, according to a new report published […]

16 Typosquatted RubyGems Packages Steal Browser Credentials and Crypto Wallets

Aug 18, 2026 // 14:52

Cybersecurity researchers have flagged a new typosquatting campaign targeting RubyGems users with a Windows-based information stealer. OpenSourceMalware, which discovered the activity on August 15, 2026, […]

SleeperGem Uses Three Malicious RubyGems Packages to Target Developer Machines

Jul 20, 2026 // 11:43

Cybersecurity researchers have flagged a new software supply chain attack codenamed SleeperGem targeting the Ruby ecosystem after three malicious gems were published to RubyGems with […]

GemStuffer Abuses 150+ RubyGems to Exfiltrate Scraped U.K. Council Portal Data

May 13, 2026 // 11:16

Cybersecurity researchers are calling attention to a new campaign dubbed GemStuffer that has targeted the RubyGems repository with more than 150 gems that use the […]

RubyGems Suspends New Signups After Hundreds of Malicious Packages Are Uploaded

May 12, 2026 // 17:55

RubyGems, the standard package manager for the Ruby programming language, has temporarily paused account sign ups following what has been described as a “major malicious […]