
SleeperGem: Malicious RubyGems Packages Target Developer Machines in Supply Chain Attack
CybersecuritySupplyChainAttacksRubyGemsMalware
Cybersecurity researchers identified a software supply chain attack named SleeperGem targeting the Ruby ecosystem, involving three malicious RubyGems packages published to compromise developer machines. The rogue packages include git_credential_manager (versions 2.8.0–2.8.3, published on July 18, 2026) and Dendreo (versions 1.1.3–1.1.4), designed to deliver additional malicious payloads. The attack aims to exploit the RubyGems repository, though no specific CVE IDs or further technical execution details were disclosed. The primary impact involves potential unauthorized access or code execution on affected developer systems. No attribution or additional threat actor details were provided in the report.