
Research
/Security News
PolinRider Spreads Through Compromised GitHub Accounts and Packagist
Operators behind PolinRider used a compromised GitHub account to plant malware in four development versions of a Packagist package with 700,000+ downloads.
stream async iterables and promises inside of a json
const stream = Aw8JSON.stringify({ hello: Promise.resolve("world") })
//send stream via REST body
const result = await Aw8JSON.parse(stream)
result.hello.then(console.log)
//logs "world"
FAQs
stream async iterables and promises inside of a json
The npm package aw8json receives a total of 3 weekly downloads. As such, aw8json popularity was classified as not popular.
We found that aw8json demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.

Research
/Security News
Operators behind PolinRider used a compromised GitHub account to plant malware in four development versions of a Packagist package with 700,000+ downloads.

Security News
GitHub Actions now supports cache-mode, a least-privilege control on the Actions cache aimed at the cache poisoning technique behind recent compromises.

Company News
Allow myself to introduce... myself.