
Security News
/Research
Wallet-Draining npm Package Impersonates Nodemailer to Hijack Crypto Transactions
Malicious npm package impersonates Nodemailer and drains wallets by hijacking crypto transactions across multiple blockchains.
backpressurify
Advanced tools
Wrapper for `Duplex` stream objects to ensure they respect back-pressure
Wrapper for Duplex
stream objects to ensure they respect back-pressure
This module add support for back-pressure on Duplex
stream objects that don't
support it, sending in-wire messages to control the flow. It's specially useful
for network streams to notify the sender end to pause or resume sending info in
case the receiver can't be able to process them as fast, so there's no need to
collapse the network.
npm install backpressurify
Duplex
stream object to be wrappedDuplex
constructorFAQs
Wrapper for `Duplex` stream objects to ensure they respect back-pressure
The npm package backpressurify receives a total of 2 weekly downloads. As such, backpressurify popularity was classified as not popular.
We found that backpressurify demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
/Research
Malicious npm package impersonates Nodemailer and drains wallets by hijacking crypto transactions across multiple blockchains.
Security News
This episode explores the hard problem of reachability analysis, from static analysis limits to handling dynamic languages and massive dependency trees.
Security News
/Research
Malicious Nx npm versions stole secrets and wallet info using AI CLI tools; Socket’s AI scanner detected the supply chain attack and flagged the malware.