Frequency
3
occurrences
First Seen
May 22, 2026
Last Seen
July 20, 2026
Related Threat Clusters
-
INJ3CTOR3 Targets FreePBX Systems with JOMANGY Webshell and VoIP Toll Fraud
A cyber campaign attributed to the threat actor INJ3CTOR3 is targeting FreePBX systems, deploying a new PHP webshell named JOMANGY. This operation utilizes a six-layer persistence mechanism to maintain control over…
5 articles · Updated May 22, 2026 -
SleeperGem: Malicious RubyGems Package Targets Developer Environments
A supply chain attack named SleeperGem has been identified targeting the RubyGems ecosystem, exploiting dormant maintainer accounts to publish a malicious gem called git_credential_manager. This gem, which has already…
3 articles · Updated July 19, 2026 -
RubyGems Implements Dependency Cooldowns to Combat Supply Chain Attacks
RubyGems has introduced dependency cooldowns in Bundler to mitigate supply chain attacks that exploit newly published packages. This feature delays the installation of packages until they have been available for a…
2 articles · Updated June 8, 2026
Recent Intelligence Reports
- SleeperGem attack targets Ruby ecosystem with malicious gems — Feeds.Feedburner · July 20, 2026
- Simon Willison — simonwillison.net · June 8, 2026
- Hackers Use Six-Layer Persistence on FreePBX Systems — Gbhackers · May 22, 2026