Security researchers are sounding the alarm on a highly resourceful new campaign dubbed “GemStuffer.” Uncovered by Socket’s...
RubyGems
Security researchers at Socket have uncovered a coordinated software supply chain campaign orchestrated through the GitHub account...
The Socket Threat Research Team has uncovered a growing trend among malicious package developers: leveraging Discord webhooks...
The Rack project, a key Ruby library providing a minimal and modular interface for web application development,...
Socketβs Threat Research Team has revealed a long-running supply chain attack in the RubyGems ecosystem, where a...
Socketβs Threat Research Team has uncovered a targeted supply chain attack leveraging malicious RubyGems impersonating Fastlane plugins....
Researchers at Socket have uncovered a series of malicious campaigns exploiting Out-of-Band Application Security Testing (OAST) techniques....
The maintainers of the RubyGems package manager have addressed a high-risk security vulnerability in the CGI class...