
Research
NPM targeted by malware campaign mimicking familiar library names
Socket uncovered npm malware campaign mimicking popular Node.js libraries and packages from other ecosystems; packages steal data and execute remote code.
@3rdweb/contracts
Advanced tools
Lets anyone deploy their own copy of the smart contracts on the platform.
Lets anyone deploy their own copy of the smart contracts on the platform.
The contracts addresses are the same across all different chains that we supported.
Registry.sol
: 0x902a29f2cfe9f8580ad672AaAD7E917d85ca9a2EForwarder.sol
: 0xc82BbE41f2cF04e3a8efA18F7032BDD7f6d98a81ControlDeployer.sol
0x9559F8A57931b85567350Cb50538ec0fc437F8c9Deployed chains
Testnet Only Contract Deployments
MintableERC20Permit.sol
(mumbai only): 0xCe8271Ad06e8CB0EE47d1486947313b7c1290D14If you have any feedback, please reach out to us at support@thirdweb.com.
FAQs
Lets anyone deploy their own copy of the smart contracts on the platform.
The npm package @3rdweb/contracts receives a total of 370 weekly downloads. As such, @3rdweb/contracts popularity was classified as not popular.
We found that @3rdweb/contracts demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 7 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Socket uncovered npm malware campaign mimicking popular Node.js libraries and packages from other ecosystems; packages steal data and execute remote code.
Research
Socket's research uncovers three dangerous Go modules that contain obfuscated disk-wiping malware, threatening complete data loss.
Research
Socket uncovers malicious packages on PyPI using Gmail's SMTP protocol for command and control (C2) to exfiltrate data and execute commands.