
Research
/Security News
10 npm Typosquatted Packages Deploy Multi-Stage Credential Harvester
Socket researchers found 10 typosquatted npm packages that auto-run on install, show fake CAPTCHAs, fingerprint by IP, and deploy a credential stealer.
@crate.io/crate-gc-admin
Advanced tools
This is an administration interface for CrateDB, that aims to be a direct replacement for the original [crate-admin](https://github.com/crate/crate-admin) (a.k.a. Admin UI).
This is an administration interface for CrateDB, that aims to be a direct replacement for the original crate-admin (a.k.a. Admin UI).
GC Admin is open source and will always be open source (Apache 2.0).
GC Admin aims to be embedded within a CrateDB database, as the original crate-admin is. However, the project can also be run standalone, and configured to access CrateDB using Cross-Origin requests.
GC Admin is pure TypeScript/React that runs in a browser (no backend code).
GC Admin exposes a React component library, where components can be re-used in other React applications (i.e. they are used in CrateDB Cloud).
GC Admin has a consistent UX with CrateDB Cloud.
GC Admin authenticates to CrateDB using standard HTTP Basic Auth.
GC Admin includes certain enterprise features, which require a non-open-source, paid-for application called Grand Central to function. When Grand Central is not present, the admin UI works, but certain features/tabs are inaccessible. Grand Central is always accessed via HTTP(S) Cross-Origin requests (the URL is configurable).
GC Admin authenticates to Grand Central via a JWT token, which must be obtained from CrateDB Cloud.
To install this library you have to run the following command:
yarn add @crate.io/crate-gc-admin
Then, if you are using tailwind, edit your tailwind.config file and
add the following:
...
content: [
...
'./node_modules/@crate.io/crate-gc-admin/**/*.{js,jsx,ts,tsx}'
]
...
and edit your index.css to import library style:
@import '@crate.io/crate-gc-admin/style.css';
To publish a new version of the crate-gc-admin you need to
git checkout -b prefix/release-x.y.zpackage.json with the new versionCHANGES.md with a new release sectionFAQs
This is an administration interface for CrateDB, that aims to be a direct replacement for the original [crate-admin](https://github.com/crate/crate-admin) (a.k.a. Admin UI).
We found that @crate.io/crate-gc-admin demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 0 open source maintainers collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
/Security News
Socket researchers found 10 typosquatted npm packages that auto-run on install, show fake CAPTCHAs, fingerprint by IP, and deploy a credential stealer.

Product
Socket Firewall Enterprise is now available with flexible deployment, configurable policies, and expanded language support.

Security News
Open source dashboard CNAPulse tracks CVE Numbering Authorities’ publishing activity, highlighting trends and transparency across the CVE ecosystem.