#
DIFF.BLOG
New
Following
Discover
Jobs
More
Top Writers
Suggest a blog
Upvotes plugin
Report bug
Contact
About
Sign up
The home for great developer writing.
We surface the best developer writing from thousands of independent blogs, updated daily.
Join Diff.blog
TOPICS
The Hidden Dangers in Your Gemfile: Supply Chain Attacks in RubyGems
·
fastruby.io
·
Nov. 12, 2025, 6:04 p.m.
Security
Supply chain attacks
rubygems
Software Security
Best Practices for Developers
Summary
This post discusses the recent supply chain attacks on RubyGems and provides advice on how developers can safeguard their projects from such threats, highlighting the importance of security in software development.
Read full post on fastruby.io →
MORE POSTS LIKE THIS
Cool down before you install: give new gems a few days to be vetted
Blog Rubygems ·
Jun 3, 2026
rubygems
bundler
Let's enable MFA for all Ruby gems
Thoughtbot ·
Apr 21, 2026
Security
rubygems
How to build a secure-by-default AI coding agent
Stack Overflow ·
Sep 4, 2026
AI
Security
Your Agent Trusts Things You Never Approved
Blogs Cisco ·
Sep 3, 2026
Artificial Intelligence (AI)
AI Security
OWASP launches OASIS to fix Open Source bugs at scale
Adafruit Industries Blog ·
Sep 4, 2026
Open Source
Security
The Lethal Trifecta: A Practical Test for Prompt Injection Risk
Aleksei Aleinikov ·
Sep 1, 2026
Data Exfiltration
prompt injection
Discover more posts →
AUTHOR
Sponsored
Zulip
Organized team chat for people who take work seriously. Topic-based threading keeps conversations focused.
Try Zulip
Become a sponsor →
RECENT POSTS FROM THE AUTHOR
Choose how you want to continue.
Continue with GitHub
Continue with Google