
Research
Malicious npm Packages Impersonate Flashbots SDKs, Targeting Ethereum Wallet Credentials
Four npm packages disguised as cryptographic tools steal developer credentials and send them to attacker-controlled Telegram infrastructure.
Scrapes the web for the collectible dice game's card images. It is currently powered by dicemastersrules.com
Unfortunately, at the time of this writing dicemastersrules.com seems to be down. This library depends on that website to function so unless it comes back consider this package deprecated.
npm install --save dm-lookup
var dm = require('dm-lookup');
var search = dm.search('storm');
search.on('list', console.log); // quick list, the cards lack some fields
like image
search.on('card', console.log); // full card info, fires for each result
search.on('done', console.log); // complete list of full cards, slow!
// need to start a new search? no problem
search.abort()
[ { set: 'Avengers vs X-Men',
number: '78',
energy: 'Bolt',
affiliation: 'Fantastic Four',
cost: '4',
title: 'Human Torch',
subtitle: 'Johnny Storm',
url: 'http://www.dicemastersrules.com/card/human-torch-johnny-storm/',
name: 'Human Torch - Johnny Storm' },
{ set: 'Avengers vs X-Men',
number: '19',
energy: 'Mask',
affiliation: 'X-Men',
cost: '3',
title: 'Storm',
subtitle: 'African Priestess',
url: 'http://www.dicemastersrules.com/card/storm-african-priestess/',
name: 'Storm - African Priestess' } ... More not shown ]
{ set: 'Avengers vs X-Men',
number: '19',
energy: 'Mask',
affiliation: 'X-Men',
cost: '3',
title: 'Storm',
subtitle: 'African Priestess',
url: 'http://www.dicemastersrules.com/card/storm-african-priestess/',
name: 'Storm - African Priestess',
image: 'http://www.dicemastersrules.com/wp-content/uploads/2014/05/019-African-Priestess.png',
rarity: 'Common',
maxDice: '4' }
[ { set: 'Avengers vs X-Men',
number: '21',
energy: 'Mask',
affiliation: 'X-Men',
cost: '2',
title: 'Storm',
subtitle: '\'Ro',
url: 'http://www.dicemastersrules.com/card/storm-ro/',
name: 'Storm - \'Ro',
image: 'http://www.dicemastersrules.com/wp-content/uploads/2014/05/021-Ro.png',
rarity: 'Common',
maxDice: '4' } ... More not shown ]
Clone the repository from Github, then:
npm install
npm run test
Making multiple requests to a Wordpress site is slow. It will have to do until someone provides a proper API. (。・ω・。)
FAQs
Obtain card data for Marvel Dice Masters™
The npm package dm-lookup receives a total of 6 weekly downloads. As such, dm-lookup popularity was classified as not popular.
We found that dm-lookup demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Four npm packages disguised as cryptographic tools steal developer credentials and send them to attacker-controlled Telegram infrastructure.
Security News
Ruby maintainers from Bundler and rbenv teams are building rv to bring Python uv's speed and unified tooling approach to Ruby development.
Security News
Following last week’s supply chain attack, Nx published findings on the GitHub Actions exploit and moved npm publishing to Trusted Publishers.