
Research
Malicious fezbox npm Package Steals Browser Passwords from Cookies via Innovative QR Code Steganographic Technique
A malicious package uses a QR code as steganography in an innovative technique.
@openenergytools/scl-lib
Advanced tools
This repository - SclLib - is a collection of TypeScript functions, that allow to faster develop modules for SCL editing.
SclLib is primarily exporting functions, that allow to manipulate SCL elements. There are various types of functions you can find in this library grouped into:
element creation: Those functions are triggered by the wish to create a valid SCL element. Those functions do check primarily whether limitation to create such an element are met.
edit checks: Those function are triggered by the wish to edit a specific SCL element, e.g. GSEControl
.
Update
, Insert
or Remove
.Update
, Insert
or Remove
. The difference between the input and output contains expertise related to IEC 61850-6.generators: Generator functions that allow to dynamically create unique value such as MAC-addresses, APPID and others
FAQs
Function library supporting SCL editing
The npm package @openenergytools/scl-lib receives a total of 46 weekly downloads. As such, @openenergytools/scl-lib popularity was classified as not popular.
We found that @openenergytools/scl-lib demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 2 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
A malicious package uses a QR code as steganography in an innovative technique.
Research
/Security News
Socket identified 80 fake candidates targeting engineering roles, including suspected North Korean operators, exposing the new reality of hiring as a security function.
Application Security
/Research
/Security News
Socket detected multiple compromised CrowdStrike npm packages, continuing the "Shai-Hulud" supply chain attack that has now impacted nearly 500 packages.