GemStuffer Exploits RubyGems to Exfiltrate UK Council Data

Meet GemStuffer, a sneaky campaign that's hijacking the RubyGems registry to steal sensitive data, including information from a UK council, by hiding scraped content within seemingly harmless package files. Over 150 malicious gems have been used to store and exfiltrate this data, exposing it to anyone who knows where to look.

https://osintsights.com/gemstuffer-exploits-rubygems-to-exfiltrate-uk-council-data?utm_source=mastodon&utm_medium=social

#Gemstuffer #Rubygems #DataExfiltration #PackageRegistry #SupplyChain

GemStuffer Exploits RubyGems to Exfiltrate UK Council Data

Learn how GemStuffer exploits RubyGems to steal UK council data. Discover the campaign's tactics and protect your organization now from RubyGems security threats effectively.

OSINTSights

RubyGems Under Attack

RubyGems가 현재 대규모 악성 공격을 받고 있어 신규 회원 가입이 일시 중단된 상태입니다. 수백 개의 패키지가 공격에 연루되었으며, 일부는 악성 코드를 포함하고 있습니다. RubyGems 팀은 공격 차단과 데이터 분석을 위해 긴급 대응 중이며, DDoS 및 악성 업로드를 차단하는 데 성공했습니다. 커뮤니티는 상황을 예의주시하며 추가 정보를 기다리고 있습니다.

https://twitter.com/maciejmensfeld/status/2054164602577940619

#rubygems #supplychainattack #security #malware #opensource

Maciej Mensfeld (@maciejmensfeld) on X

We're dealing with a major malicious attack on @rubygems right now. Signups are paused for the time being. Hundreds of packages involved - mostly targeting us, but some carrying exploits. The team has been on this for hours. More details to follow once we're through it. #ruby

X (formerly Twitter)

RubyGems Disrupts Signups Amid Malicious Package Surge

RubyGems has temporarily halted new account registrations amid a significant surge in malicious packages, with security experts warning of a major attack on the platform. The move comes as Mend.io, the organization responsible for securing RubyGems, works to contain the incident.

https://osintsights.com/rubygems-disrupts-signups-amid-malicious-package-surge?utm_source=mastodon&utm_medium=social

#MaliciousPackage #Rubygems #SoftwareSupplyChain #EmergingThreats #Mendio

RubyGems Disrupts Signups Amid Malicious Package Surge

Learn about RubyGems' disrupted signups amid a malicious package surge and what it means for developers; read the latest updates now on our site.

OSINTSights

How to Host Your Own #Mastodon Server on a #VPS (5 Minute Quick-Start Guide)

This article provides a guide for how to host your own Mastodon server on a VPS.

Running your own Mastodon server on a VPS is an excellent way to enjoy an efficient and secure Mastodon experience.
What is Mastodon?
Mastodon is a #decentralized social media platform that enables users to post ...
Continued 👉 https://blog.radwebhosting.com/how-to-host-your-own-mastodon-server-on-a-vps/?utm_source=mastodon&utm_medium=social&utm_campaign=mastodon.social #rubygems #installguide #rubyonrails #selfhosting #selfhosted #activitypub

How to Install #GitLab on #AlmaLinux #VPS Easily In this tutorial we are going to show you in detail how to install Gitlab on AlmaLinux VPS.
What is GitLab?
GitLab is open-source #software written in Ruby, Go and JavaScript operated by GitLab Inc. GitLab offers a wide range of features such as CI/CD (Continuous Integration, Continuous Delivery) which makes the work of ...
Continued 👉 https://blog.radwebhosting.com/how-to-install-gitlab-on-almalinux-vps-easily/?utm_source=mastodon&utm_medium=social&utm_campaign=mastodon.raddemo.host #dedicatedserver #selfhosting #selfhosted #rubyonrails #installguide #rubygems
How to Manage Ruby Apps in #cPanel This is a detailed guide demonstrating how to manage Ruby apps in cPanel. This guide covers setup, deployment, and ongoing management. This guide assumes you have access to a cPanel account with Ruby support.
What are Ruby Apps?
Ruby Apps are software applications built using the Ruby programming language, often leveraging the Ruby on Rails framework. These apps run on a ...
Continued 👉 https://blog.radwebhosting.com/manage-ruby-apps-in-cpanel/?utm_source=mastodon&utm_medium=social&utm_campaign=mastodon.raddemo.host #sshcommands #sshaccess #rubyonrails #rubygems
How to Install #GitLab on #AlmaLinux #VPS Easily In this tutorial we are going to show you in detail how to install Gitlab on AlmaLinux VPS.
What is GitLab?
GitLab is open-source #software written in Ruby, Go and JavaScript operated by GitLab Inc. GitLab offers a wide range of features such as CI/CD (Continuous Integration, Continuous Delivery) which makes the work of ...
Continued 👉 https://blog.radwebhosting.com/how-to-install-gitlab-on-almalinux-vps-easily/?utm_source=mastodon&utm_medium=social&utm_campaign=mastodon.social #selfhosting #rubygems #dedicatedserver #rubyonrails #installguide #selfhosted
How to Deploy #Forem on Rocky Linux #VPS This article provides a guide detailing how to deploy Forem on Rocky Linux VPS.
What is Forem?
Forem is a robust, open-source platform for building communities like DEV.to. Deploying it on Rocky Linux involves setting up dependencies like PostgreSQL, ...
Continued 👉 https://blog.radwebhosting.com/deploy-forem-on-rocky-linux-vps/?utm_source=mastodon&utm_medium=social&utm_campaign=mastodon.raddemo.host #opensource #reverseproxy #elasticsearch #selfhosted #forumsoftware #selfhosting #rockylinux #rubyonrails #rubygems #redis #forum #sidekiq #postgresql #letsencrypt

How to Host Your Own #Mastodon Server on a #VPS (5 Minute Quick-Start Guide)

This article provides a guide for how to host your own Mastodon server on a VPS.

Running your own Mastodon server on a VPS is an excellent way to enjoy an efficient and secure Mastodon experience.
What is Mastodon?
Mastodon is a #decentralized social media platform that enables users to post ...
Continued 👉 https://blog.radwebhosting.com/how-to-host-your-own-mastodon-server-on-a-vps/?utm_source=mastodon&utm_medium=social&utm_campaign=mastodon.raddemo.host #rubygems #selfhosted #installguide #rubyonrails #selfhosting #activitypub

Release v8.2.2 · AlchemyCMS/alchemy-devise

What's Changed Other Changes [8.2-stable] Merge pull request #279 from AlchemyCMS/prevent-deprecation-warnings by @alchemycms-bot[bot] in #280 Full Changelog: v8.2.1...v8.2.2

GitHub