Research
Security News
Malicious npm Packages Inject SSH Backdoors via Typosquatted Libraries
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
Library and CLI for generating favicons in all formats
I wanted to create simpler and more intuitive replacement for existing project with the same purpose - Real Favicon Generator. RFG is really good project but sadly it works only online, its API for Node.js makes HTTP requests under the hood instead of working locally and whole generator seems a little bit overcomplicated for me, personally.
faviconize repository contains both CLI application and library source.
npm i faviconize -S
You will probably want to install it as devDependency :D
import { faviconize } from 'faviconize'
async function run() {
await faviconize('path/to/image.jpg')
// ... or with custom output icon types
await faviconize('path/to/other-image.jpg', ['apple-touch-icon', 'msapplication-TileImage'])
// ... or with all icon types and custom output directory
await faviconize('path/to/another-image.jpg', null, '.')
}
run()
Work in progress
Work in progress
This project is licensed under the MIT license. All contributions are welcome.
FAQs
Library and CLI for generating favicons in all formats
The npm package faviconize receives a total of 6 weekly downloads. As such, faviconize popularity was classified as not popular.
We found that faviconize demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
Security News
MITRE's 2024 CWE Top 25 highlights critical software vulnerabilities like XSS, SQL Injection, and CSRF, reflecting shifts due to a refined ranking methodology.
Security News
In this segment of the Risky Business podcast, Feross Aboukhadijeh and Patrick Gray discuss the challenges of tracking malware discovered in open source softare.