Skip to content

Example InSpec profile to detect presence of a malicious rest-client gem (CVE-2019-15224)

Notifications You must be signed in to change notification settings

chef-cft/inspec_cve_2019_15224

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

1 Commit
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

a malicious rest-client gem

On August 19, 2019, it was discovered that the rest-client gem had had several versions published containing malicious code. In discovering the malicious rest-client, several other new gems were determined to be carrying similar code.

Coverage:

This repo is an example of how one could use InSpec to create controls to audit hosts for the presence of malicious versions of rest-client and for the other gems discovered during the investigation. The checks require a scan of entire filesystem directory structures. Because this is a slow process, it is recommended that these controls should not be added to continuous system checks.

About

Example InSpec profile to detect presence of a malicious rest-client gem (CVE-2019-15224)

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Contributors 3

  •  
  •  
  •