StepSecurity analyzes the SleeperGem supply-chain attack, where compromised RubyGems packages targeted developer machines rather than CI runners, fetched payloads from a Forgejo instance, and installed persistent malware after dormant maintainer accounts were abused.
SleeperGem: Compromised RubyGems Drop a Persistent Backdoor
StepSecurity analyzes the SleeperGem supply-chain attack, where compromised RubyGems packages targeted developer machines rather than CI runners, fetched payloads from a Forgejo instance, and installed persistent malware after dormant maintainer accounts were abused.
Source: Stepsecurity