Research
Security News
Malicious npm Packages Inject SSH Backdoors via Typosquatted Libraries
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
homebridge-acurite-temperature
Advanced tools
After dealing with issues with my refrigerator not maintaining temperature, I bought the AcuRite Digital Wireless Fridge and Freezer Thermometer so I could track what was happening. And my first thought after buying it was where was the integration into HomeBridge? So I quickly cobbled this together using a RPI, RTL_433 and a RTL SDR
I have tested this on both a Mac and a RPI3
sudo npm install -g homebridge
sudo npm install -g homebridge-acurite-temperature
platform
: "Acurite"name
: "Acurite"devices - 1F
: Name for fridge sensordevices - 2R
: Name for freezer sensorstorage
: ( optional ) storage of chart graphing data for history graphing, either fs or googleDrive, defaults to fsspreadsheetId
( optional ) Log data to a google sheet, this is part of the URL of your spreadsheet. ie the spreadsheet ID in the URL https://docs.google.com/spreadsheets/d/abc1234567/edit#gid=0 is "abc1234567".Example configuration:
"platforms": [{
"platform": "Acurite",
"name": "Acurite",
"devices": {
"1R": "Fridge",
"2F": "Freezer"
}
}],
This presumes you already have a google account, and have access to google drive/sheets already
Step 1: Turn on the Drive API a. Use this wizard ( https://console.developers.google.com/start/api?id=sheets.googleapis.com ) to create or select a project in the Google Developers Console and automatically turn on the API. Click Continue, then Go to credentials.
b. On the Add credentials to your project page, click the Cancel button.
c. At the top of the page, select the OAuth consent screen tab. Select an Email address, enter a Product name if not already set, and click the Save button. I used 'Sheets Data Logger'
d. Select the Credentials tab, click the Create credentials button and select OAuth client ID.
e. Select the application type Other, enter the name "Drive API Quickstart", and click the Create button.
f. Click OK to dismiss the resulting dialog.
g. Click the file_download (Download JSON) button to the right of the client ID.
h. Move this file to your .homebridge and rename it logger_client_secret.json.
Step 2: Authorize your computer to access your Drive Account
a. Change to the directory where the plugin is installed i.e.
cd /usr/lib/node_modules/homebridge-mcuiot/node_modules/mcuiot-logger
b. Run the authorization module
node quickstart.js
c. Browse to the provided URL in your web browser.
If you are not already logged into your Google account, you will be prompted to log in. If you are logged into multiple Google accounts, you will be asked to select one account to use for the authorization.
d. Click the Accept button.
e. Copy the code you're given, paste it into the command-line prompt, and press Enter.
FAQs
RTL_433 based temperature sensor for Homebridge
The npm package homebridge-acurite-temperature receives a total of 1 weekly downloads. As such, homebridge-acurite-temperature popularity was classified as not popular.
We found that homebridge-acurite-temperature demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
Security News
MITRE's 2024 CWE Top 25 highlights critical software vulnerabilities like XSS, SQL Injection, and CSRF, reflecting shifts due to a refined ranking methodology.
Security News
In this segment of the Risky Business podcast, Feross Aboukhadijeh and Patrick Gray discuss the challenges of tracking malware discovered in open source softare.