
Security News
Socket Releases Free Certified Patches for Critical vm2 Sandbox Escape
A critical vm2 sandbox escape can allow untrusted JavaScript to break isolation and execute commands on the host Node.js process.
coffeenode-passphrase
Advanced tools
Table of Contents generated with DocToc
CoffeeNode bSearch is a passphrase generator; it currently includes a small German wordlist.
We all know that good passwords are hard to find. xkcd famously explained how a
good and memorable passphrase works:

Following these ideas, i've put together a very simple random Passphrase generator. Here is a selection of generated passphrases:
tasche-327-schwester-reparatur-tafel-965-kirche
gut-479-april-wörterbuch-einladung-tisch-771
körper-sport-390-schnaps-eintrittskarte-richard-046
gletscher-turm-027-lassen-strumpf-geld-925
kaufmann-einkaufszentrum-383-lachen-onkel-busch-786
reparatur-kino-446-lautsprecher-platz-fest-662
gesicht-schalter-gast-übung-353-oper-798
bier-warenhaus-037-mühle-amerika-415-drachen
kartoffel-musik-094-baum-herd-zeit-095
kleidung-wolga-sollen-217-teppich-fest-691
doktor-turm-brett-959-tasse-365-brust
These phrases all share the following characteristics:
These rules help to maintain an easily memorable outer form of the generated passphrases; above all, the passphrases are intended to be reasonably secure while memorable and communicable without having to write them down.
FAQs
Passphrase generator for NodeJS
The npm package coffeenode-passphrase receives a total of 15 weekly downloads. As such, coffeenode-passphrase popularity was classified as not popular.
We found that coffeenode-passphrase demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
A critical vm2 sandbox escape can allow untrusted JavaScript to break isolation and execute commands on the host Node.js process.

Research
Five malicious NuGet packages impersonate Chinese .NET libraries to deploy a stealer targeting browser credentials, crypto wallets, SSH keys, and local files.

Security News
pnpm 11 turns on a 1-day Minimum Release Age and blocks exotic subdeps by default, adding safeguards against fast-moving supply chain attacks.