Summary On August 14, attackers published a series of rest-client versions from 1.6.10 to 1.6.13 using the credentials of a rest-client maintainer whose RubyGems.org account was compromised. The affected versions were downloaded a small number of times (~1000). On August 19, @juskoljo observed the malicious gem version and created this issue. Later that day, the RubyGems security team yanked the o