
Research
/Security News
Laravel Lang Compromised with RCE Backdoor Across 700+ Versions
Laravel Lang packages were compromised with an RCE backdoor across hundreds of versions, exposing cloud, CI/CD, and developer secrets.
@zxsz/services
Advanced tools
pnpm add @zxsz/services -D
或
npm install @zxsz/services -D
├── common/clipboard // 复制粘贴板
├── common/download // 链接下载/blob下载
├── common/sortable // 拖动排序
├── theme // 主题管理相关
├── websocket // websocket通信相关
├── config // 系统配置相关
├── constant // 系统常量定义
├── dictionary // 字典管理相关
├── format // 格式化相关,日期,数字等
├── is-true // 值判断
├── fullscreen // 全屏控制
├── module // 模块管理相关,跳转,通信
├── permission // 权限相关
├── request-looper // 轮询请求相关
├── regexp // 正则判断相关
├── router // 路由异步加载相关
├── storage // localStorage,sessionStorage相关
├── script-loader // js/css动态加载相关
├── hooks // 公共hooks
├── favorites // 系统收藏相关
├── user-tasks // 系统任务通知管理相关
FAQs
We found that @zxsz/services demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
/Security News
Laravel Lang packages were compromised with an RCE backdoor across hundreds of versions, exposing cloud, CI/CD, and developer secrets.

Security News
Socket found a malicious postinstall hook across 700+ GitHub repos, including PHP packages on Packagist and Node.js project repositories.

Security News
Vibe coding at scale is reshaping how packages are created, contributed, and selected across the software supply chain