Newsylist real-time news trend intelligence
▲ Peaking Technology

SleeperGem Uses Three Malicious RubyGems Packages to Target Developer Machines

A supply chain attack dubbed SleeperGem is targeting developer machines via compromised RubyGems packages.

4sources
4articles
2velocity
+0%since first seen
6h agofirst detected

Velocity timeline

How fast coverage is spreading — measured hourly from article rate × source diversity. How this works →

2110Jul 21 05:29Jul 21 13:29 UTC

The brief

SleeperGem has deployed three malicious RubyGems packages—git_credential_manager, Dendreo, and fastlane—to drop persistent backdoors on developer machines. The attack specifically targets dormant maintainer accounts to facilitate the supply chain compromise.

Coverage from The Hacker News, Aikido Security, and StepSecurity focuses on the delivery mechanism and the specific packages affected. Additionally, cyberpress.org reports that North Korean hackers are utilizing SVG images to hide OTTERCOOKIE malware for the purpose of backdooring developers.

Future developments center on the persistence of the backdoors and the continued identification of compromised maintainer accounts.

Synthesized by Newsylist from the headlines below under a strict no-invention contract. ✓ fact-checked: all claims supported by sources Updated 6h ago.

Quick answers

Which specific RubyGems packages were compromised?

The compromised packages are git_credential_manager, Dendreo, and fastlane.

What is the primary target of the SleeperGem attack?

The attack targets developer machines by compromising dormant maintainer accounts.

What role does OTTERCOOKIE malware play?

According to cyberpress.org, North Korean hackers are hiding OTTERCOOKIE malware within SVG images to backdoor developers.

Coverage (4)

People, places & organizations

Topics

Related trends

▲ Peaking Technology

Sunday Preview

1 sources 1 articles v 0 just now