
Research
2025 Report: Destructive Malware in Open Source Packages
Destructive malware is rising across open source registries, using delays and kill switches to wipe code, break builds, and disrupt CI/CD.
events4js is a javascript events framework
designed for require() usage
write by @waxzce
examples and test avaible into the tests directory
API doc is generated by yuidoc into docs/output/pathjs_docs/index.html
build directory contain usable build
feel free to contribute, comment or ask :-)
Under MIT licence
The goal of events4js is give the possibility of produce events from any object.
Create an EventProducer :
var MyClass = (function () { var e4js = require('events4js');
Some_Event_Producer = function () {
this.initialize();
}
var p = Some_Event_Producer.prototype = new e4js.EventProducer();
p.initialize_event = p.initialize;
p.initialize = function () {
this.initialize_event();
}
return Some_Event_Producer;
})();
Some tricks : => autoLaunch The autolaunch is a way to fire an event after another. For example fire "end" after "success" or "error" Just give some config to the initialize_envent method :
this.initialize_event({ autoLaunch: { 'end': ['success', 'error'] } });
=> waitFor The wait for allow to fire an event after a list of events fire. For example fire "tree" if "one" and "two" have been fire. Just give some config to the initialize_envent method :
this.initialize_event({ waitFor: { 'tree': ['two', 'one'], 'l': ['m', 'n'] } });
Other examples in the tests directory
FAQs
Events management library for javascript
We found that events4js demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
Destructive malware is rising across open source registries, using delays and kill switches to wipe code, break builds, and disrupt CI/CD.

Security News
Socket CTO Ahmad Nassri shares practical AI coding techniques, tools, and team workflows, plus what still feels noisy and why shipping remains human-led.

Research
/Security News
A five-month operation turned 27 npm packages into durable hosting for browser-run lures that mimic document-sharing portals and Microsoft sign-in, targeting 25 organizations across manufacturing, industrial automation, plastics, and healthcare for credential theft.