
Research
/Security News
Malicious Chrome and Firefox Extensions Steal Crypto Traders’ Session and Wallet Data
Malicious Chrome and Firefox extensions target Axiom Trade and Padre users, stealing session tokens and wallet data.
@sentry/server-runtime-injection
Advanced tools
Runtime diagnostics-channel injection hooks for the Sentry JavaScript SDKs. Must be kept external (not bundled) when bundling a server.
This is an internal package for the Sentry JavaScript SDKs. It is not part of the public API contract and may change at any time.
It contains the runtime diagnostics-channel injection used by the server SDKs — the module hooks
that transform instrumented dependencies as they load at runtime (register, hook, import-hook),
together with the vendored code transformer they rely on.
Important: this package must be kept external (not bundled) when bundling a server. Its runtime hook loads a transformer that self-references its own on-disk
node_moduleslocation; bundling it strips the transformer and breaks that self-reference. When you bundle your server, either keep@sentry/server-runtime-injectionexternal, or rely on the build-time instrumentation from the Sentry bundler plugins instead.
FAQs
Runtime diagnostics-channel injection hooks for the Sentry JavaScript SDKs. Must be kept external (not bundled) when bundling a server.
The npm package @sentry/server-runtime-injection receives a total of 1,305 weekly downloads. As such, @sentry/server-runtime-injection popularity was classified as popular.
We found that @sentry/server-runtime-injection demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Research
/Security News
Malicious Chrome and Firefox extensions target Axiom Trade and Padre users, stealing session tokens and wallet data.

Security News
GPT-6 Astra hits 100% on ExploitBench and finds zero-days autonomously, while independent tests reveal scope violations and monitoring gaps.

Product
Socket can now send alerts and supply chain attack notifications to Microsoft Teams, with filters that route the right updates to each channel.