
Research
NPM targeted by malware campaign mimicking familiar library names
Socket uncovered npm malware campaign mimicking popular Node.js libraries and packages from other ecosystems; packages steal data and execute remote code.
cordova-plugin-proguard
Advanced tools
Cordova plugin which activates ProGuard and minification for debug and release builds in your cordova mobile application.
ProGuard is the open source optimizer for Java bytecode
You can read more about it on ProGuard official website and on android developer portal
cordova plugin add cordova-plugin-proguard
- this command will configure your build.gradle
file and copy proguard-custom.txt
to ${androidPlatformDirectory}/assets/www/proguard-custom.txt
proguard-custom.txt
file contains some basic rules for your cordova mobile app. Feel free to fork this repo and modify it as you want.
You can also to check out some Android ProGuard snippets
If you want to add rules to this proguard-custom.txt
, please create your own proguard-custom.txt
and add this to your projectroot folder.
Upon installing the proguard-plugin, the rules will be added to your project.
Example rules for various situations will be in the commented section in the plugin proguard-custom.txt
.
ionic cordova platform rm android
ionic cordova platform add android
https://alfilatov.com/posts/how-to-setup-proguard-in-cordova-application/
MIT © Aleksandr Filatov
FAQs
Cordova plugin for ProGuard
The npm package cordova-plugin-proguard receives a total of 427 weekly downloads. As such, cordova-plugin-proguard popularity was classified as not popular.
We found that cordova-plugin-proguard demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Socket uncovered npm malware campaign mimicking popular Node.js libraries and packages from other ecosystems; packages steal data and execute remote code.
Research
Socket's research uncovers three dangerous Go modules that contain obfuscated disk-wiping malware, threatening complete data loss.
Research
Socket uncovers malicious packages on PyPI using Gmail's SMTP protocol for command and control (C2) to exfiltrate data and execute commands.