
Research
Two Malicious Rust Crates Impersonate Popular Logger to Steal Wallet Keys
Socket uncovers malicious Rust crates impersonating fast_log to steal Solana and Ethereum wallet keys from source code.
cp-zen-frontend
Advanced tools
Frontend code for the CoderDojo Community Platform (Zen)
We've begun moving e2e tests to Cypress in order to improve reliability.
To run Cypress tests with the Cypress UI (good for debugging issues), you will first need to run the front end by running yarn start
, then simply run
yarn cypress:open
This will open a window where you can select what spec to run. Notice that if you have a new version of the translations which is not published yet, tests on strings containing interpolation will fail as they are not depending on the linked version of your own repo. Running it headless will solve that.
You can also run the Cypress tests headless through Docker. You'll first need to install Cypress within the Docker container by running
docker-compose run --rm cypress yarn cypress:install
Once done, the installed Cypress is kept in a volume so it will persist between runs. If running the tests ever gives out about Cypress not being installed, just run this command again.
To run the tests
docker-compose run --rm cypress
The tests in the /cypress/integration_e2e
folder that are not run as part of the main test in CI.
They are designed to be run manually & locally with the full stack, no endpoints are stubbed.
NOTE: the register test includes a 5 second pause where you are required to click the recaptcha.
yarn cypress:e2e:open
The selenium-based wdio tests are legacy tests, waiting to be migrated to cypress. They are not actively maintained and are there only for reference until migrated. To run the tests
docker-compose run --rm test e2e-with-mocks
FAQs
Frontend for CoderDojo Community Platform (Zen)
The npm package cp-zen-frontend receives a total of 6 weekly downloads. As such, cp-zen-frontend popularity was classified as not popular.
We found that cp-zen-frontend demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 5 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Socket uncovers malicious Rust crates impersonating fast_log to steal Solana and Ethereum wallet keys from source code.
Research
A malicious package uses a QR code as steganography in an innovative technique.
Research
/Security News
Socket identified 80 fake candidates targeting engineering roles, including suspected North Korean operators, exposing the new reality of hiring as a security function.