Security News
Research
Data Theft Repackaged: A Case Study in Malicious Wrapper Packages on npm
The Socket Research Team breaks down a malicious wrapper package that uses obfuscation to harvest credentials and exfiltrate sensitive data.
@telepilotco/tdlib-binaries-prebuilt
Advanced tools
Prebuilt TDLib libraries, distributed with node-pre-gyp
Intention of this plugin is to produce binary builds of tdlib/td in a way so that they can be used in
node-pre-gyp
npm package. This can be handy when using tdlib/td in node.js environments, where compilation is not desired
or not possible due to unavailability of tools that are required.
TD can be compiled from source using specific targets from our Makefile.
Prebuilt binaries are available for following architectures:
Build process is automated with Github Actions for following environments:
MacOs / Windows builds are currently not configured, but adding them would be also possible so please submit Issue request if you are willing to have those added, or send a PR.
MacOs binary can be built locally using build-lib-native
Makefile task.
If you would like to perform fully local build, few targets are defined in Makefile
that enable Dockerized
as well as native tdlib
builds.
To start dockerized build, use one of the following make
targets:
build-lib-docker-linux-arm64-glibc
build-lib-docker-linux-arm64-musl
build-lib-docker-linux-x64-glibc
build-lib-docker-linux-x64-musl
If you want to perform native build, use make build-lib-native
. In this case you need to make sure you have required
tooling installed on your system. make init
should be able to help you with that.
If something still does not work, please refer to prebuilt-tdlib-docker.sh
script which is used in dockerized build.
FAQs
Prebuilt TDLib libraries, distributed with node-pre-gyp
We found that @telepilotco/tdlib-binaries-prebuilt demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
Research
The Socket Research Team breaks down a malicious wrapper package that uses obfuscation to harvest credentials and exfiltrate sensitive data.
Research
Security News
Attackers used a malicious npm package typosquatting a popular ESLint plugin to steal sensitive data, execute commands, and exploit developer systems.
Security News
The Ultralytics' PyPI Package was compromised four times in one weekend through GitHub Actions cache poisoning and failure to rotate previously compromised API tokens.