Research
Security News
Quasar RAT Disguised as an npm Package for Detecting Vulnerabilities in Ethereum Smart Contracts
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
binary-bitfield
Advanced tools
Most bitfield systems are very simplistic. This one allows you to:
binaryBitfield(pieces [, downloaded])
npm install binary-bitfield
import binaryBitfield from 'binary-bitfield';
// Create bitfield with just a piece size:
let bitfield1 = new binaryBitfield(9);
// binaryBitfield {
// pieces: 9,
// bitfield: '1111111110000000',
// totalBitfield: '0000000000000000',
// downloaded: '0000000000000000',
// percent: 0 }
// Create bitfield with a hex input for both piece size and downloaded
let bitfield2 = new binaryBitfield('c0', '40');
//binaryBitfield {
// pieces: 2,
// bitfield: '11000000',
// totalBitfield: '01000000',
// downloaded: '01000000',
// percent: 0.5 }
// Keep track of the total bitfield as peers come in:
let buffer = Buffer.from('40', 'hex');
bitfield2.findNewPieces(buffer, (result, total) => {
console.log('hex: ', result);
console.log('total: ', total);
console.log(bitfield);
});
hex: 00 // buffer or 'peer' had no new pieces
total: 02000000 // a new totalBitfield count
// binaryBitfield {
// pieces: 2,
// bitfield: '11000000',
// totalBitfield: '02000000',
// downloaded: '01000000',
// percent: 0.5 }
bitfield.set(0) // returns downloaded: '11000000'
// binaryBitfield {
// pieces: 2,
// bitfield: '11000000',
// totalBitfield: '02000000',
// downloaded: '11000000',
// percent: 1 }
bitfield.get(0) // true
pieces: number bitfield: string totalBitfield: string downloaded: string percent: number
isSeeder(string | Buffer): Boolean
This compares the bitfield to input. This quickly ensures the peer is a seeder.
The return is true
if peer is seeder
getBitfield() : string
Get the bitfield.
binary2hex(binary: string): string
Convert a binary string to hex. This system reads the input at half byte (4 bit) interval.
hex2binary(hex: string): string
Convert a hex string to binary. This system reads the input at half byte (4 bit) interval.
getPercentage(): number
Returns the current percentage downloaded.
NEW onHave(piece: number, bitfield: string | Buffer): string
Updates a peers hash with piece index and returns the new bitfield.
ISC License (ISC) Copyright <2017>
Permission to use, copy, modify, and/or distribute this software for any purpose with or without fee is hereby granted, provided that the above copyright notice and this permission notice appear in all copies.
THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
FAQs
Binary bitfield system to easily keep track of torrent pieces
The npm package binary-bitfield receives a total of 0 weekly downloads. As such, binary-bitfield popularity was classified as not popular.
We found that binary-bitfield demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
Security News
Research
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
Research
Security News
Socket researchers discovered a malware campaign on npm delivering the Skuld infostealer via typosquatted packages, exposing sensitive data.