
Research
/Security News
16 Malicious Firefox Extensions Steal Cryptocurrency Wallet Credentials
Socket found 16 malicious Firefox extensions designed to steal crypto wallet recovery phrases and private keys using cloned Rabby and OKX interfaces.
@eva/eva.js
Advanced tools
More Introduction
Eva does not bundle or automatically load reflect-metadata. Runtime-only
usage works with Eva's non-persistent fallback APIs.
Applications that use inspector metadata must load the polyfill before Eva:
import 'reflect-metadata';
import { Game } from '@eva/eva.js';
For CDN scripts, place the reflect-metadata script before EVA.min.js.
The CDN bundles provide a globalThis compatibility alias through self or
window. The current Eva bundle syntax target remains ES2015, so this does
not add IE 11 support.
FAQs
@eva/eva.js
The npm package @eva/eva.js receives a total of 1,724 weekly downloads. As such, @eva/eva.js popularity was classified as popular.
We found that @eva/eva.js demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 6 open source maintainers collaborating on the project.

Research
/Security News
Socket found 16 malicious Firefox extensions designed to steal crypto wallet recovery phrases and private keys using cloned Rabby and OKX interfaces.

Product
Socket now scans VS Code extensions, giving teams early detection of risky behaviors, hidden capabilities, and supply chain threats in developer tools.

Research
/Security News
Socket uncovered two malicious VS Code themes in a GlassWorm-linked cluster with thousands of installs across VS Code Marketplace and Open VSX.