
Security News
/Research
Wallet-Draining npm Package Impersonates Nodemailer to Hijack Crypto Transactions
Malicious npm package impersonates Nodemailer and drains wallets by hijacking crypto transactions across multiple blockchains.
@maxdome/eb-deploy
Advanced tools
CLI for AWS Elastic Beanstalk deployments
Inspired by dpl.
$ npm install -g @maxdome/eb-deploy
Usage: eb-deploy [options]
CLI for AWS Elastic Beanstalk deployments
Options:
-V, --version output the version number
-a, --application-name <value> name of the Elastic Beanstalk application
-e, --environment-name <value> name of the Elastic Beanstalk environment
-z, --zip-file [value] the ZIP file that should be deployed
-b, --bucket [value] name of the S3 bucket to upload the ZIP file to
-p, --bucket-path [value] target location of the ZIP file within the S3 bucket
-l, --version-label [value] version label of the new app version
-d, --version-description [value] description of the new app version
-r, --assume-role [value] AWS role ARN to assume
--only-create-app-version only create a new app version without actually deploying it
--ignore-existing-app-version do not deploy an existing app version if the version with the label already exists
--skip-wait-until-deployed do not wait until the app is deployed
--skip-cleanup skip the cleanup after the deploy
--region [value] AWS region of the Elastic Beanstalk application
--access-key-id [value] AWS Access Key ID
--secret-access-key [value] AWS Secret Access Key
--session-token [value] AWS Session Token
-h, --help output usage information
eb-deploy --application-name test-application \
--environment-name test-application-test
FAQs
CLI for AWS Elastic Beanstalk deployments
We found that @maxdome/eb-deploy demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 15 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
/Research
Malicious npm package impersonates Nodemailer and drains wallets by hijacking crypto transactions across multiple blockchains.
Security News
This episode explores the hard problem of reachability analysis, from static analysis limits to handling dynamic languages and massive dependency trees.
Security News
/Research
Malicious Nx npm versions stole secrets and wallet info using AI CLI tools; Socket’s AI scanner detected the supply chain attack and flagged the malware.