
Research
/Security News
16 Malicious Firefox Extensions Steal Cryptocurrency Wallet Credentials
Socket found 16 malicious Firefox extensions designed to steal crypto wallet recovery phrases and private keys using cloned Rabby and OKX interfaces.
@mastra/editor
Advanced tools
Affected versions:
The data and provider layer behind Mastra Studio editing experiences. It manages agents, prompts, scorers, MCP servers, workspaces, skills, and favorites across code and storage sources.
npm install @mastra/editor
Pass the editor to your Mastra instance to enable Studio editing, versioning, prompt blocks, and agent code overrides.
import { Mastra } from '@mastra/core/mastra';
import { MastraEditor } from '@mastra/editor';
export const mastra = new Mastra({
editor: new MastraEditor(),
});
See the package changelog for version history and release notes.
We have an open community Discord. Come and say hello and let us know if you have any questions or need any help getting things running.
FAQs
Mastra Editor for agent management and instantiation
The npm package @mastra/editor receives a total of 71,349 weekly downloads. As such, @mastra/editor popularity was classified as popular.
We found that @mastra/editor demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 7 open source maintainers collaborating on the project.

Research
/Security News
Socket found 16 malicious Firefox extensions designed to steal crypto wallet recovery phrases and private keys using cloned Rabby and OKX interfaces.

Product
Socket now scans VS Code extensions, giving teams early detection of risky behaviors, hidden capabilities, and supply chain threats in developer tools.

Research
/Security News
Socket uncovered two malicious VS Code themes in a GlassWorm-linked cluster with thousands of installs across VS Code Marketplace and Open VSX.