threat-intel 16 Typosquatted RubyGems Packages Steal Browser Credentials and Crypto Wallets A new typosquatting campaign targeting RubyGems users has been identified, leveraging a Rust-based stealer to steal browser credentials, cryptocurrency wallets, and Telegram data. The campaign utilizes a 'StubMaker' tool that generates a fake build toolchain to conceal a malicious install, and exploits a vulnerability… The Hacker News · Aug 18, 2026 High typosquattingrubymalware
vulnerability Ruby on Rails Patches Critical Vulnerability A critical vulnerability in Ruby on Rails, specifically related to image processing using the libvips library, has been patched. Attackers could potentially read arbitrary files and expose secrets, leading to remote code… SecurityWeek · Aug 1, 2026 Critical CVE-2026-66066rubyrailslibvips
vulnerability Critical Rails Flaw Could Let Unauthenticated Attackers Read Server Files via Image Uploads A critical vulnerability (CVE-2026-66066, CVSS 9.5) in Ruby on Rails' Active Storage component, using libvips for image processing, allows unauthenticated attackers to read arbitrary files from application servers. This… The Hacker News · Jul 29, 2026 Critical CVE-2026-66066rubyrailslibvips
supply-chain SleeperGem Uses Three Malicious RubyGems Packages to Target Developer Machines A sophisticated supply chain attack, dubbed SleeperGem, has been targeting Ruby developers through three previously dormant malicious RubyGems packages. These packages, including a fake Git Credential Manager, were updat… The Hacker News · Jul 20, 2026 High rubysupply chainmalware
vulnerability Vulnérabilité dans Ruby on Rails (16 juillet 2026) A vulnerability in Ruby on Rails versions prior to 1.7.1 allows for remote code injection via XSS. This means attackers could potentially execute malicious code on vulnerable systems, requiring immediate patching to prev… CERT-FR · Jul 16, 2026 Medium rubyrailsxss