
Security News
gem.coop Tests Dependency Cooldowns as Package Ecosystems Move to Slow Down Attacks
gem.coop is testing registry-level dependency cooldowns to limit exposure during the brief window when malicious gems are most likely to spread.
This is a hexadecimal editor. Here's how it works:
hexedit blah.binblah.bin in hex to a temporary text file.blah.bin.blah.bin.Each line in the editor is something like this:
# offset: data # ASCII value.
00000000: 5468 6973 2069 7320 6120 6865 7861 6465 # This.is.a.hexade
00000010: 6369 6d61 6c20 6564 6974 6f72 2e20 2048 # cimal.editor...H
00000020: 6572 6527 7320 686f 7720 6974 2077 6f72 # ere's.how.it.wor
00000030: 6b73 3a0a 0a31 2e20 596f 7520 7479 7065 # ks:..1..You.type
The annotations and whitespace are just for your benefit, and are
ignored by the program. Everything before the first :, or after the
first # is removed. Whitespace is stripped. If there are any invalid
hex characters after this transformation, or if the result is an odd
number of hex digits, then an error is thrown.
FAQs
Hexadecimal Editor
The npm package hexedit receives a total of 0 weekly downloads. As such, hexedit popularity was classified as not popular.
We found that hexedit demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Security News
gem.coop is testing registry-level dependency cooldowns to limit exposure during the brief window when malicious gems are most likely to spread.

Security News
Following multiple malicious extension incidents, Open VSX outlines new safeguards designed to catch risky uploads earlier.

Research
/Security News
Threat actors compromised four oorzc Open VSX extensions with more than 22,000 downloads, pushing malicious versions that install a staged loader, evade Russian-locale systems, pull C2 from Solana memos, and steal macOS credentials and wallets.