On June 3rd, Bundler 4.0.13 shipped a feature called cooldown. The release post described the problem...

Three malicious RubyGems packages in the SleeperGem attack skip CI runners, target developer machines, and install persistent native malware.

On June 3rd, Bundler 4.0.13 shipped a feature called cooldown. The release post described the problem...