Security News
Supply Chain Attack Detected in Solana's web3.js Library
A supply chain attack has been detected in versions 1.95.6 and 1.95.7 of the popular @solana/web3.js library.
@renovosolutions/cdk-library-certbot
Advanced tools
AWS CDK Construct Library to manage Lets Encrypt certificate renewals with Certbot
A CDK Construct Library to automate the creation and renewal of Let's Encrypt certificates.
This library creates a Lambda function that utilizes Certbot to create certificates. Upon completion those certs are imported to AWS Certificate Manager (ACM) and uploaded to S3 and the email used for the certs is sent a notification. The function is also assigned an every Monday trigger to check if there is under 30 days remaining on the certificates that have been imported to ACM and if so it re-issues new certificates.
This construct will create all required components but optionally allows the users to pass their own S3 bucket, SNS topic, enable Lambda insights, and other customization as needed.
FAQs
AWS CDK Construct Library to manage Lets Encrypt certificate renewals with Certbot
The npm package @renovosolutions/cdk-library-certbot receives a total of 0 weekly downloads. As such, @renovosolutions/cdk-library-certbot popularity was classified as not popular.
We found that @renovosolutions/cdk-library-certbot demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 0 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
A supply chain attack has been detected in versions 1.95.6 and 1.95.7 of the popular @solana/web3.js library.
Research
Security News
A malicious npm package targets Solana developers, rerouting funds in 2% of transactions to a hardcoded address.
Security News
Research
Socket researchers have discovered malicious npm packages targeting crypto developers, stealing credentials and wallet data using spyware delivered through typosquats of popular cryptographic libraries.