RubyGems — Cyber Threats, Attacks & Incidents

Threat entity extracted from intelligence sources

Frequency
14
occurrences
First Seen
February 16, 2026
Last Seen
July 24, 2026

RubyGems is a technology platform tracked across 10 threat clusters and 14 intelligence report mentions on ThreatCluster. First observed February 16, 2026; most recent activity July 24, 2026.

Related Threat Clusters

Recent Intelligence Reports

  • Malicious RubyGems Turn Developer Machines Into Monero Miners and Spread Through SSH — Cybersecuritynews · July 24, 2026
  • 136 Malicious RubyGems Packages Deploy XMRig Miner and Spread via SSH — Gbhackers · July 24, 2026
  • SleeperGem attack targets Ruby ecosystem with malicious gems — Feeds.Feedburner · July 20, 2026
  • Supply Chain Vulnerability in RubyGems Highlights Growing Software Security Risks — Tipranks · July 19, 2026
  • SleeperGem: RubyGems supply chain attack targets dormant maintainer accounts — Aikido.Dev · July 19, 2026
  • Packagist is now protected by Aikido Intel and other updates to the PHP registry — Aikido.Dev · June 26, 2026
  • RapidFort Launches Curated Libraries to Stop Supply Chain Attacks Before They Reach the Pipeline — Businesswire · June 11, 2026
  • New PyPI Wave in Mini Shai-Hulud, Miasma, and Hades Campaign — Technadu · June 9, 2026

CVSS v3.1 Breakdown