
Research
2025 Report: Destructive Malware in Open Source Packages
Destructive malware is rising across open source registries, using delays and kill switches to wipe code, break builds, and disrupt CI/CD.
backbone-bind
Advanced tools
Super simple 2way binding for Backbone views.
This plugin requires browserify, but feel free to open PR or issues if you want to use the plugin with something else.
npm i -S backbone-bind
var binding = require('backbone-bind');
var Backbone = require('backbone')
var model = require('./model');
// bind typical input view with this.model
var View = Backbone.View.extend({
tagName: 'input',
bind: binding
render: function() {
this.bind('title');
return this;
}
});
var view = new View({
model: model
});
$('body').append(view);
You can use either bind(options) or bind(field, options), as you prefer.
options.$elDefault value: this.$el
jQuery element that you will bind.
options.fieldName of model property that you will bind.
options.attrDefault value: val
Represents input value. (checked, val, innerText, etc).
options.directionDefault value: <>
Represents binding direction (model <-> element). Only < and > symbols
make sence, but model <-> element is better to understand.
options.eventsDefault value: keydown
List of bound events like change, keypress, keydown...
options.modelDefault value: this.model
Backbone model that you will bind.
MIT
FAQs
Super simple 2-way binding for Backbone Views
We found that backbone-bind demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
Destructive malware is rising across open source registries, using delays and kill switches to wipe code, break builds, and disrupt CI/CD.

Security News
Socket CTO Ahmad Nassri shares practical AI coding techniques, tools, and team workflows, plus what still feels noisy and why shipping remains human-led.

Research
/Security News
A five-month operation turned 27 npm packages into durable hosting for browser-run lures that mimic document-sharing portals and Microsoft sign-in, targeting 25 organizations across manufacturing, industrial automation, plastics, and healthcare for credential theft.