
Security News
/Research
Wallet-Draining npm Package Impersonates Nodemailer to Hijack Crypto Transactions
Malicious npm package impersonates Nodemailer and drains wallets by hijacking crypto transactions across multiple blockchains.
create-ossus
Advanced tools
Ossus is a framework for building documentation sites that focuses on being:
create-ossus
) and lets you get started writing markdown without having to fuss around with any dev work.Ossus is comprised of 3 packages:
ossus
ossus-components
ossus-scripts
All three are avaliable as packages on NPM: npm install --save ossus ossus-components ossus-scripts
;
We also provide a starter script so you can get setup with Ossus in one command, just run npx create-ossus
in the directory you want to use.
More information can be found on our documentation.
We built Ossus because we couldn't find a framework out there that perfectly fit our needs at CDK Global. We hope that others will be able to get the value from it that we have, and we welcome contributions from the community!
We have adopted a Code of Conduct that we expect all contributors to adhere to. Please read the code of conduct before contributing so that you know what is allowed as a part of this community.
Ossus is MIT Licensed
FAQs
Scripts to create a default Ossus documentation app
The npm package create-ossus receives a total of 0 weekly downloads. As such, create-ossus popularity was classified as not popular.
We found that create-ossus demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
/Research
Malicious npm package impersonates Nodemailer and drains wallets by hijacking crypto transactions across multiple blockchains.
Security News
This episode explores the hard problem of reachability analysis, from static analysis limits to handling dynamic languages and massive dependency trees.
Security News
/Research
Malicious Nx npm versions stole secrets and wallet info using AI CLI tools; Socket’s AI scanner detected the supply chain attack and flagged the malware.