
Security News
/Research
Wallet-Draining npm Package Impersonates Nodemailer to Hijack Crypto Transactions
Malicious npm package impersonates Nodemailer and drains wallets by hijacking crypto transactions across multiple blockchains.
@myxplor/shared
Advanced tools
A collection of shared components (and their associated styles)
yarn install @xplor/shared
This will give us the js components, to import the stylesheet add to main.js
import '@myxplor/shared/build/main.css'
In order to see the components, and to see them as you work on them…s
yarn start
yarn test
There is a known issue with running jest --watch
(errors with FSEvents.framework)
https://github.com/facebook/jest/issues/1767
Try installing watchman (the source of the issue) via brew
brew install watchman
FAQs
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
/Research
Malicious npm package impersonates Nodemailer and drains wallets by hijacking crypto transactions across multiple blockchains.
Security News
This episode explores the hard problem of reachability analysis, from static analysis limits to handling dynamic languages and massive dependency trees.
Security News
/Research
Malicious Nx npm versions stole secrets and wallet info using AI CLI tools; Socket’s AI scanner detected the supply chain attack and flagged the malware.