THREATOPS
THREAT OPSThreat News › 16 Typosquatted RubyGems Packages Steal Browser Credentials and Crypto Wallets

16 Typosquatted RubyGems Packages Steal Browser Credentials and Crypto Wallets

lowthehackernewsPublished 2026-08-18

Cybersecurity researchers have flagged a new typosquatting campaign targeting RubyGems users with a Windows-based information stealer.

OpenSourceMalware, which discovered the activity on August 15, 2026, is tracking the threat under the moniker StubMaker. The complete list of packages published as part of the campaign is below -

ubnuler ubnlder ri18nr reaker rakier orakw joxn

MITRE ATT&CK techniques

Original source: https://thehackernews.com/2026/08/16-typosquatted-rubygems-packages-steal.html