LINKED LIST [txt mode] ▸ strong_password v0.0.7 rubygem hijacked
home explore | log in

strong_password v0.0.7 rubygem hijacked

withatwist.dev · first added by @afreshcup · 2026-09-30 · 1 upvotes

log in to save, upvote or flag this.


─── In 0 lists ─────────────────────────────────────────

(not in any lists yet)

* [CVE-2019-15224] Version 1.6.13 published with malicious backdoor. (from the discussion)

─── Discussions ────────────────────────────────────────

* Strong_password Rubygem hijacked
625 pts · 128 comments · node

─── From the discussion ────────────────────────────────

* strong_password/lib/strong_password/entropy_calculator.rb at master · bdmac/strong_password
github.com · node
* Expand gem security build/install instructions; add checksum by bf4 · Pull Request #70 · rubygems/guides
github.com · node
* strong_password/lib/strong_password/dictionary_adjuster.rb at master · bdmac/strong_password
github.com · node
* https://github.com/rubygems/rubygems/issues/2496
github.com · node
* GitHub - dropbox/zxcvbn: Low-Budget Password Strength Estimation
github.com · node

─── Related hn threads ─────────────────────────────────

* Rubygems.org compromised
405 pts · 158 comments · node