
Research
Two Malicious Rust Crates Impersonate Popular Logger to Steal Wallet Keys
Socket uncovers malicious Rust crates impersonating fast_log to steal Solana and Ethereum wallet keys from source code.
@withgraphite/gti-server
Advanced tools
This is the server-side code for gti
.
This code is based on the MIT-licensed code isl
published by Meta as part of the sapling
project. The original license can be found in licenses/isl.txt
. It was hard-forked from https://github.com/facebook/sapling
on sha 708cbba23299934cb0db01fc3112c8a991feaa40
, with selected changes pulled in until sha 89fb18345eb629d11cfe9325ee7708a4b15b6f0f
and later f7e8639689026587d4ca0ef6939ccbca22d676f8
and later ab458a73e57078bcbdec752e1209873afa285064
and later 909329c4cda1f0941ed751b92821385b078e8fea
and later 33fc507dbbd01b1632ba6e85c6ee365d0f897f61
.
That code can be found here: https://github.com/facebook/sapling/tree/708cbba23299934cb0db01fc3112c8a991feaa40/addons/isl-server
This derivative work is still governed by the license in the root of this repository.
FAQs
deprecated
We found that @withgraphite/gti-server demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 10 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Socket uncovers malicious Rust crates impersonating fast_log to steal Solana and Ethereum wallet keys from source code.
Research
A malicious package uses a QR code as steganography in an innovative technique.
Research
/Security News
Socket identified 80 fake candidates targeting engineering roles, including suspected North Korean operators, exposing the new reality of hiring as a security function.