
Research
/Security News
9 Malicious NuGet Packages Deliver Time-Delayed Destructive Payloads
Socket researchers discovered nine malicious NuGet packages that use time-delayed payloads to crash applications and corrupt industrial control systems.
ffmpeg-static-fork
Advanced tools
Static ffmpeg binaries for macOS, Linux, Windows.
Supports macOS (64-bit and arm64), Linux (32 and 64-bit, armhf, arm64), Windows (32 and 64-bit). The ffmpeg version currently used is 6.0.
Note: The version of ffmpeg-static follows SemVer. When releasing new versions, we do not consider breaking changes in ffmpeg itself, but only the JS interface (see below). For example, ffmpeg-static@4.5.0 might download ffmpeg 5.0. To prevent an ffmpeg-static upgrade downloading backwards-incompatible ffmpeg versions, use a strict version range for it or use a lockfile.
Also check out node-ffmpeg-installer!
$ npm install ffmpeg-static
Note: During installation, it will download the appropriate ffmpeg binary from the b6.0 GitHub release. Use and distribution of the binary releases of ffmpeg are covered by their respective license.
By default, the ffmpeg binary will get downloaded from https://github.com/eugeneware/ffmpeg-static/releases/download. To customise this, e.g. when using a mirror, set the FFMPEG_BINARIES_URL environment variable.
export FFMPEG_BINARIES_URL=https://cdn.npmmirror.com/binaries/ffmpeg-static
npm install ffmpeg-static
Because ffmpeg-static will download a binary specific to the OS/platform, you need to purge node_modules before (re-)packaging your app for a different OS/platform (read more in #35).
Returns the path of a statically linked ffmpeg binary on the local filesystem.
const pathToFfmpeg = require('ffmpeg-static')
console.log(pathToFfmpeg)
// /Users/j/playground/node_modules/ffmpeg-static/ffmpeg
Check the example script for a more thorough example.
The binaries downloaded by ffmpeg-static are from these locations:
This npm package includes statically linked binaries that are produced by the following individuals. Please consider supporting and donating to them who have been providing quality binary builds for many years:
FAQs
ffmpeg binaries for macOS, Linux and Windows
The npm package ffmpeg-static-fork receives a total of 0 weekly downloads. As such, ffmpeg-static-fork popularity was classified as not popular.
We found that ffmpeg-static-fork demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
/Security News
Socket researchers discovered nine malicious NuGet packages that use time-delayed payloads to crash applications and corrupt industrial control systems.

Security News
Socket CTO Ahmad Nassri discusses why supply chain attacks now target developer machines and what AI means for the future of enterprise security.

Security News
Learn the essential steps every developer should take to stay secure on npm and reduce exposure to supply chain attacks.