
Research
Two Malicious Rust Crates Impersonate Popular Logger to Steal Wallet Keys
Socket uncovers malicious Rust crates impersonating fast_log to steal Solana and Ethereum wallet keys from source code.
@withgraphite/gti-shared
Advanced tools
Shared types and utils for gti-server
and gti
.
This code is based on the MIT-licensed code isl
published by Meta as part of the sapling
project. The original license can be found in licenses/isl.txt
. It was hard-forked from https://github.com/facebook/sapling
on sha 708cbba23299934cb0db01fc3112c8a991feaa40
, with selected changes pulled in until sha 89fb18345eb629d11cfe9325ee7708a4b15b6f0f
and later f7e8639689026587d4ca0ef6939ccbca22d676f8
.
That code can be found here: https://github.com/facebook/sapling/tree/708cbba23299934cb0db01fc3112c8a991feaa40/addons/shared
This derivative work is still governed by the license in the root of this repository.
FAQs
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Socket uncovers malicious Rust crates impersonating fast_log to steal Solana and Ethereum wallet keys from source code.
Research
A malicious package uses a QR code as steganography in an innovative technique.
Research
/Security News
Socket identified 80 fake candidates targeting engineering roles, including suspected North Korean operators, exposing the new reality of hiring as a security function.