
Research
Two Malicious Rust Crates Impersonate Popular Logger to Steal Wallet Keys
Socket uncovers malicious Rust crates impersonating fast_log to steal Solana and Ethereum wallet keys from source code.
Quick and dirty CLI util to add banner info to file(s) based on your package.json
Quick and dirty CLI util to add banner info to file(s) based on your package.json
This project uses node and npm.
$ npm install bannerman
$ # OR
$ yarn add bannerman
You should be in the root directory of the project (Same as the package.json
file).
Just list the files you would like to add banners to followed by --[name of property]
for all the properties of your package.json
you would like to add a banner.
If you flag a property that doesn't exist it will just be ignored.
For example:
$ bannerman file1.js file2.css --name --version
Will generate at the top of file1.js
and file2.css
:
/**
*
* @name awesome-project
* @version 1.0.0
*/
It can easily be used as a npm
script:
"script": {
"banner": "bannerman dist/awesome.js --name --version --author --license"
}
Note: - There is no support for nested properties in the package.json
MIT
FAQs
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Socket uncovers malicious Rust crates impersonating fast_log to steal Solana and Ethereum wallet keys from source code.
Research
A malicious package uses a QR code as steganography in an innovative technique.
Research
/Security News
Socket identified 80 fake candidates targeting engineering roles, including suspected North Korean operators, exposing the new reality of hiring as a security function.