
Research
Two Malicious Rust Crates Impersonate Popular Logger to Steal Wallet Keys
Socket uncovers malicious Rust crates impersonating fast_log to steal Solana and Ethereum wallet keys from source code.
You'll find gif.ski executables in:
node_modules/gifski/bin/windows/gifski.exe
node_modules/gifski/bin/macos/gifski
node_modules/gifski/bin/debian/gifski
(for Debian deb package is better)This is just a binary package. You need to launch the binary using child_process.spawn()
or similar.
gifski 1.7.1
https://gif.ski by Kornel Lesiński
USAGE:
gifski [OPTIONS] --output <a.gif> <FILE>...
ARGS:
<FILE>... PNG image files
OPTIONS:
-o, --output <a.gif> Destination file to write to; "-" means stdout
-r, --fps <num> Frame rate of animation. This means the speed, as all frames are kept. [default: 20]
--fast 50% faster encoding, but 10% worse quality and larger file size
--extra 50% slower encoding, but 1% better quality
-Q, --quality <1-100> Lower quality may give smaller file [default: 90]
-W, --width <px> Maximum width.
By default anims are limited to about 800x600
-H, --height <px> Maximum height (stretches if the width is also set)
--no-sort Use files exactly in the order given, rather than sorted
-q, --quiet Do not display anything on standard output/console
--repeat <num> Number of times the animation is repeated (-1 none, 0 forever or
<value> repetitions
FAQs
Highest-quality GIF maker
The npm package gifski receives a total of 48 weekly downloads. As such, gifski popularity was classified as not popular.
We found that gifski demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Socket uncovers malicious Rust crates impersonating fast_log to steal Solana and Ethereum wallet keys from source code.
Research
A malicious package uses a QR code as steganography in an innovative technique.
Research
/Security News
Socket identified 80 fake candidates targeting engineering roles, including suspected North Korean operators, exposing the new reality of hiring as a security function.