
Security News
Feross on Risky Business Weekly Podcast: npm’s Ongoing Supply Chain Attacks
Socket CEO Feross Aboukhadijeh joins Risky Business Weekly to unpack recent npm phishing attacks, their limited impact, and the risks if attackers get smarter.
dat-desktop
Advanced tools
More info on active projects and modules at dat-ecosystem.org
Peer to peer data versioning & syncronization.
To run Dat Desktop in development mode:
node --version # v12.4.0
npm install # install dependencies
npm start # start the application
To create binary packages run:
npm install # install dependencies
npm run dist :os # compile the app into an binary package
If you’re not in Europe or the US, you might want to use a different mirror for
electron
. You can set the ELECTRON_MIRROR
variable to point to a different
provider:
# Europe / US
$ npm install
# Asia / Oceania
$ ELECTRON_MIRROR="https://npm.taobao.org/mirrors/electron/" npm install
SourceSansPro-Regular.ttf: Copyright 2010, 2012 Adobe Systems Incorporated (http://www.adobe.com/), with Reserved Font Name 'Source'. All Rights Reserved. Source is a trademark of Adobe Systems Incorporated in the United States and/or other countries. SIL Open Font License, 1.1
SourceCodePro-Regular.ttf: Copyright 2010, 2012 Adobe Systems Incorporated. All Rights Reserved. SIL Open Font License, 1.1
FAQs
Peer to peer data sharing app built for humans.
The npm package dat-desktop receives a total of 2 weekly downloads. As such, dat-desktop popularity was classified as not popular.
We found that dat-desktop demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 11 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
Socket CEO Feross Aboukhadijeh joins Risky Business Weekly to unpack recent npm phishing attacks, their limited impact, and the risks if attackers get smarter.
Product
Socket’s new Tier 1 Reachability filters out up to 80% of irrelevant CVEs, so security teams can focus on the vulnerabilities that matter.
Research
/Security News
Ongoing npm supply chain attack spreads to DuckDB: multiple packages compromised with the same wallet-drainer malware.