
Security News
/Research
Wallet-Draining npm Package Impersonates Nodemailer to Hijack Crypto Transactions
Malicious npm package impersonates Nodemailer and drains wallets by hijacking crypto transactions across multiple blockchains.
@ae-studio/px
Advanced tools
[](https://www.npmjs.com/package/@ae-studio/px) [](./LICENSE) [Before installing px, ensure you have Node.js >= 16 installed on your machine.
npm install -g @ae-studio/px
To use px, simply replace your package manager command with px
followed by the usual arguments you would pass. For example:
px install # Installs dependencies
px dev # Runs the 'dev' script, automatically adding 'run' for npm
px test # Executes the 'test' script
px build # Builds the project
px will detect the package manager your project is using and execute the command as if you had used the package manager's native CLI.
px improves the experience of working in TypeScript projects by making it easier to manage TypeScript declaration packages. When you install or uninstall npm packages in a TypeScript project, px will:
@types/*
) if they exist.This feature saves time and ensures your TypeScript types stay in sync with your installed packages, all without the need for manual intervention.
This tool is open-source and available under the MIT License. See the LICENSE file for details.
Built with 🧡 by AE Studio
FAQs
[](https://www.npmjs.com/package/@ae-studio/px) [](./LICENSE) [![monthly downloads](https://img.shields.io/npm/dm/%40ae-studio%2Fpx
The npm package @ae-studio/px receives a total of 8 weekly downloads. As such, @ae-studio/px popularity was classified as not popular.
We found that @ae-studio/px demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 7 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
/Research
Malicious npm package impersonates Nodemailer and drains wallets by hijacking crypto transactions across multiple blockchains.
Security News
This episode explores the hard problem of reachability analysis, from static analysis limits to handling dynamic languages and massive dependency trees.
Security News
/Research
Malicious Nx npm versions stole secrets and wallet info using AI CLI tools; Socket’s AI scanner detected the supply chain attack and flagged the malware.