Research
Security News
Quasar RAT Disguised as an npm Package for Detecting Vulnerabilities in Ethereum Smart Contracts
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
binary coded decimals
npm install bcd
bcd.encode(num)
— encode given number into a buffer with a minimal
length that fits the result;bcd.encode(num, length)
— encode given number into a buffer with
a given length
. If length
is more than needed, the result is aligned
at the right side of the buffer and the rest is filled with zeroes. If
length
is less then needed, the result is truncated from the left side;bcd.encode(num, buffer)
— encode givento number into a given buffer.
The above rules regarding length are applied.bcd.decode(buffer)
— decode given buffer into a number. If the buffer
is not a valid BCD, this method throws.MIT
FAQs
binary coded decimals
We found that bcd demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
Security News
Research
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
Research
Security News
Socket researchers discovered a malware campaign on npm delivering the Skuld infostealer via typosquatted packages, exposing sensitive data.