home.social

#packageregistry β€” Public Fediverse posts

Live and recent posts from across the Fediverse tagged #packageregistry, aggregated by home.social.

  1. GemStuffer Exploits RubyGems to Exfiltrate UK Council Data

    Meet GemStuffer, a sneaky campaign that's hijacking the RubyGems registry to steal sensitive data, including information from a UK council, by hiding scraped content within seemingly harmless package files. Over 150 malicious gems have been used to store and exfiltrate this data, exposing it to anyone who knows where to look.

    osintsights.com/gemstuffer-exp

    #Gemstuffer #Rubygems #DataExfiltration #PackageRegistry #SupplyChain

  2. πŸ₯³ Behold, the "SwiftHive" - a revolutionary package registry that claims to speed up your builds by a whopping 10x! πŸš€ Because, clearly, the world has been waiting for yet another tool to complicate its life with "immutable versions" and a "private beta"! πŸŽ‰
    swifthive.l18.dev/ #SwiftHive #SpeedUp #PackageRegistry #ImmutableVersions #PrivateBeta #HackerNews #ngated