
Research
/Security News
Weaponizing Discord for Command and Control Across npm, PyPI, and RubyGems.org
Socket researchers uncover how threat actors weaponize Discord across the npm, PyPI, and RubyGems ecosystems to exfiltrate sensitive data.
@codyjasonbennett/holoplay-webxr
Advanced tools
Unofficial WebXR implementation for HoloPlay holographic displays, such as Looking Glass.
Implements the WebXR API (using webxr-polyfill) for Looking Glass Factory's HoloPlay devices.
This project contains both a library and a WebExtension that injects the library before page load.
This repo contains builds of both the library and the (unpacked) extension. In order to install the extension, simply clone the repository and point your browser at the directory. (Tested in Chrome 89 and Firefox 86.)
chrome://extensions
, select the Load Unpacked
button, and point at the cloned directory.Thanks to WebXR Emulator Extension from which I took the skeleton of this project.
This fork of webxr-samples has been modified to unconditionally use WebXR for HoloPlay instead.
5.0.0-alpha.9
.
(tested page)npm run build
to build.npm run serve
to serve the demos.FAQs
Unofficial WebXR implementation for HoloPlay holographic displays, such as Looking Glass.
We found that @codyjasonbennett/holoplay-webxr demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
/Security News
Socket researchers uncover how threat actors weaponize Discord across the npm, PyPI, and RubyGems ecosystems to exfiltrate sensitive data.
Security News
Socket now integrates with Bun 1.3’s Security Scanner API to block risky packages at install time and enforce your organization’s policies in local dev and CI.
Research
The Socket Threat Research Team is tracking weekly intrusions into the npm registry that follow a repeatable adversarial playbook used by North Korean state-sponsored actors.