
Research
npm Malware Targets Telegram Bot Developers with Persistent SSH Backdoors
Malicious npm packages posing as Telegram bot libraries install SSH backdoors and exfiltrate data from Linux developer machines.
astro-auth
This is an Astro integration that TODO:description
TODO:
Install the integration automatically using the Astro CLI:
pnpm astro add astro-auth
npm astro add astro-auth
yarn astro add astro-auth
Or install it manually:
pnpm add astro-auth
npm install astro-auth
yarn add astro-auth
+import integration from "astro-auth";
export default defineConfig({
integrations: [
+ integration(),
],
});
TODO:configuration
This package is structured as a monorepo:
playground
contains code for testing the packagepackage
contains the actual packageInstall dependencies using pnpm:
pnpm i --frozen-lockfile
Start the playground:
pnpm playground:dev
You can now edit files in package
. Please note that making changes to those files may require restarting the playground dev server.
MIT Licensed. Made with ❤️ by TODO:.
TODO:
FAQs
TODO:
The npm package astro-auth receives a total of 3 weekly downloads. As such, astro-auth popularity was classified as not popular.
We found that astro-auth demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Malicious npm packages posing as Telegram bot libraries install SSH backdoors and exfiltrate data from Linux developer machines.
Security News
pip, PDM, pip-audit, and the packaging library are already adding support for Python’s new lock file format.
Product
Socket's Go support is now generally available, bringing automatic scanning and deep code analysis to all users with Go projects.