⤷ Title: Jumping the Gap: APT37’s “Ruby Jumper” Campaign Weaponizes Cloud Storage and USBs to Breach Isolated Networks
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 04 Mar 2026 07:01:03 +0000
════════════════════════
⌗ Tags: #Cybercriminals #air_gapped network #APT37 #Cybersecurity 2026 #RESTLEAF #Ruby Jumper #ScarCruft #SNAKEDROPPER #THUMBSBD #USB Malware #Velvet Chollima #VIRUSTASK #Zoho WorkDrive #Zscaler ThreatLabz
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 04 Mar 2026 07:01:03 +0000
════════════════════════
⌗ Tags: #Cybercriminals #air_gapped network #APT37 #Cybersecurity 2026 #RESTLEAF #Ruby Jumper #ScarCruft #SNAKEDROPPER #THUMBSBD #USB Malware #Velvet Chollima #VIRUSTASK #Zoho WorkDrive #Zscaler ThreatLabz
Penetration Testing Tools
Jumping the Gap: APT37’s "Ruby Jumper" Campaign Weaponizes Cloud Storage and USBs to Breach Isolated Networks
The DPRK-affiliated syndicate APT37 has augmented its arsenal dedicated to breaching air-gapped networks. The Zscaler ThreatLabz vanguard has
⤷ Title: Rocket — CVE-2021–22911 NoSQL Injection + Ruby cap_setuid to Root | TryHackMe
════════════════════════
𐀪 Author: Roshan Rajbanshi
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 14:46:42 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #ethical_hacking #sql #ruby
════════════════════════
𐀪 Author: Roshan Rajbanshi
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 14:46:42 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #ethical_hacking #sql #ruby
Medium
Rocket — CVE-2021–22911 NoSQL Injection + Ruby cap_setuid to Root | TryHackMe
The Rocket machine presents a layered, multi-service attack surface that rewards methodical enumeration and precise exploit chaining. The…
⤷ Title: GemStuffer: Attackers Weaponize RubyGems as a Covert Data Drop for UK Gov Scraping
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 13 May 2026 04:21:32 +0000
════════════════════════
⌗ Tags: #Malware #Cyber Security #data exfiltration #GemStuffer #infosec #Malware Analysis #ModernGov #Ruby Security #RubyGems #Socket #supply chain attack #UK Council Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 13 May 2026 04:21:32 +0000
════════════════════════
⌗ Tags: #Malware #Cyber Security #data exfiltration #GemStuffer #infosec #Malware Analysis #ModernGov #Ruby Security #RubyGems #Socket #supply chain attack #UK Council Security
Daily CyberSecurity
GemStuffer: Attackers Weaponize RubyGems as a Covert Data Drop for UK Gov Scraping
GemStuffer exploits RubyGems as an illicit data transport to scrape UK council portals. Discover how this supply chain attack bypasses standard defenses.
⤷ Title: RubyGems Under Siege: New Account Registrations Suspended After Massive Malware Incursion
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 13 May 2026 09:00:18 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cyber Security News #Infosec #Maciej Mensfeld #Malware 2026 #Mend.io #open source security #Package Manager Security #Ruby on Rails #RubyGems #supply chain attack #TeamPCP
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 13 May 2026 09:00:18 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cyber Security News #Infosec #Maciej Mensfeld #Malware 2026 #Mend.io #open source security #Package Manager Security #Ruby on Rails #RubyGems #supply chain attack #TeamPCP
Penetration Testing Tools
RubyGems Under Siege: New Account Registrations Suspended After Massive Malware Incursion
RubyGems has temporarily suspended the registration of new accounts following a pervasive assault on the Ruby ecosystem. According
⤷ Title: Before You Deploy, Ask One Question: Are Your Gems Secure?
════════════════════════
𐀪 Author: J3
════════════════════════
ⴵ Time: Mon, 15 Jun 2026 20:04:58 GMT
════════════════════════
⌗ Tags: #devsecops #ruby_on_rails #cybersecurity #application_security #bundleraudit
════════════════════════
𐀪 Author: J3
════════════════════════
ⴵ Time: Mon, 15 Jun 2026 20:04:58 GMT
════════════════════════
⌗ Tags: #devsecops #ruby_on_rails #cybersecurity #application_security #bundleraudit
Medium
Before You Deploy, Ask One Question: Are Your Gems Secure?
A hands-on introduction to Bundler Audit, CVEs, dependency security, and safer Ruby deployments.
⤷ Title: Stop Ignoring Brakeman Warnings: The Hidden Meaning Behind CWE Codes
════════════════════════
𐀪 Author: J3
════════════════════════
ⴵ Time: Sat, 20 Jun 2026 15:50:42 GMT
════════════════════════
⌗ Tags: #cwecodes #ruby_on_rails #application_security #brakeman #secure_coding
════════════════════════
𐀪 Author: J3
════════════════════════
ⴵ Time: Sat, 20 Jun 2026 15:50:42 GMT
════════════════════════
⌗ Tags: #cwecodes #ruby_on_rails #application_security #brakeman #secure_coding
Medium
Stop Ignoring Brakeman Warnings: The Hidden Meaning Behind CWE Codes
Learn how CWE mappings expose critical vulnerabilities like SQL Injection and XSS before they reach production.
⤷ Title: Avo Flaw CVE-2026-55518 Enables Privilege Escalation in Rails Apps
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 22 Jun 2026 01:11:11 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #admin panel #Authorization Bypass #Avo #CVE_2026_55518 #Missing Authorization #privilege escalation #Rails Security #ruby on rails
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 22 Jun 2026 01:11:11 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #admin panel #Authorization Bypass #Avo #CVE_2026_55518 #Missing Authorization #privilege escalation #Rails Security #ruby on rails
Daily CyberSecurity
Avo Flaw CVE-2026-55518 Enables Privilege Escalation in Rails Apps
CVE-2026-55518 is a critical Avo authorization bypass flaw enabling privilege escalation in Ruby on Rails admin panels. Update to Avo 3.32.1 now.
⤷ Title: Rails Active Storage Flaw CVE-2026-66066 Enables Remote Code Execution
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 30 Jul 2026 03:01:13 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Active Storage #Arbitrary File Read #CVE_2026_66066 #libvips #Remote Code Execution #ruby on rails
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 30 Jul 2026 03:01:13 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Active Storage #Arbitrary File Read #CVE_2026_66066 #libvips #Remote Code Execution #ruby on rails
Daily CyberSecurity
Rails Active Storage Flaw CVE-2026-66066 Enables Remote Code Execution
TL;DR Ruby on Rails has patched a critical Rails Active Storage flaw. Tracked as CVE-2026-66066 and rated 9.5 CVSS, it lets an unauthenticated attacker read arbitrary files from the server. Stolen…
⤷ Title: Public PoC Exploits GitLab RCE via Two Oj Memory Corruption Bugs
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 31 Jul 2026 07:30:22 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #depthfirst #gitlab #GitLab RCE #ipynbdiff #memory corruption #Oj #proof_of_concept #Remote Code Execution #Ruby
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 31 Jul 2026 07:30:22 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #depthfirst #gitlab #GitLab RCE #ipynbdiff #memory corruption #Oj #proof_of_concept #Remote Code Execution #Ruby
Daily CyberSecurity
Public PoC Exploits GitLab RCE via Two Oj Memory Corruption Bugs
TL;DR: Researchers at depthfirst released a working proof-of-concept for a GitLab RCE that runs commands as the git user. The chain abuses two memory corruption bugs in Oj, a native Ruby JSON pars…
⤷ Title: CVE-2026-66066: Rails Active Storage RCE Exploit Code Now Public
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 10:17:36 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Active Storage #Arbitrary File Read #CVE_2026_66066 #KindaRails2Shell #libvips #metasploit #Remote Code Execution #ruby on rails
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sat, 01 Aug 2026 10:17:36 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Active Storage #Arbitrary File Read #CVE_2026_66066 #KindaRails2Shell #libvips #metasploit #Remote Code Execution #ruby on rails
Daily CyberSecurity
CVE-2026-66066: Rails Active Storage RCE Exploit Code Now Public
TL;DR: A critical Rails Active Storage RCE flaw, CVE-2026-66066 (CVSS 9.5), lets an unauthenticated attacker read server files and potentially run code through crafted image uploads. A public Meta…
⤷ Title: KindaRails2Shell: Ruby on Rails CVE-2026-66066 RCE Flaw
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Tue, 04 Aug 2026 07:28:06 +0000
════════════════════════
⌗ Tags: #Vulnerability #Active Storage #CVE_2026_66066 #cybersecurity #KindaRails2Shell #Ruby on Rails
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Tue, 04 Aug 2026 07:28:06 +0000
════════════════════════
⌗ Tags: #Vulnerability #Active Storage #CVE_2026_66066 #cybersecurity #KindaRails2Shell #Ruby on Rails
Information Security News
KindaRails2Shell: Ruby on Rails CVE-2026-66066 RCE Flaw
A crafted image can turn a standard avatar upload form into a covert conduit for stealing web application secrets. A vulnerable Ruby on Rails server may expose encryption keys, database passwords,…
⤷ Title: How “just forward the request” turns into a surprisingly complicated job
════════════════════════
𐀪 Author: Gaurirai
════════════════════════
ⴵ Time: Wed, 12 Aug 2026 09:57:24 GMT
════════════════════════
⌗ Tags: #jwt_authentication #reverse_proxy #api_security #ruby_on_rails #api_gateway
════════════════════════
𐀪 Author: Gaurirai
════════════════════════
ⴵ Time: Wed, 12 Aug 2026 09:57:24 GMT
════════════════════════
⌗ Tags: #jwt_authentication #reverse_proxy #api_security #ruby_on_rails #api_gateway
Medium
How “just forward the request” turns into a surprisingly complicated job
You send a request: Get /orders Authorization: Bearer eyfghj…..