Skip to content

Rails webapp used to demonstrate ruby gem supply chain attack.

Notifications You must be signed in to change notification settings

Nova-8/Ruby-LegalRisk

 
 

Repository files navigation

vulnerable_application

This application has an external dependency via ruby gem evil_gem. This project shows how a gem can have unsafe changes that then pose a security risk on the application using it.

About

Rails webapp used to demonstrate ruby gem supply chain attack.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages

  • Ruby 75.4%
  • HTML 18.5%
  • JavaScript 3.9%
  • CSS 2.2%