
Security News
/Research
Wallet-Draining npm Package Impersonates Nodemailer to Hijack Crypto Transactions
Malicious npm package impersonates Nodemailer and drains wallets by hijacking crypto transactions across multiple blockchains.
homebridge-ikea
Advanced tools
A homebridge plugin for Ikeas Trådfri lamps using Ikeas Trådfri gateway with an Ikea trådfri lightbulb. As of now it works just fine for turn lamps on/off and setting the brighness and changing the temperature.
If you're running macOS or linux the included binaries should work out of the box for you and you shouldn't have to provide your own version. If you're running another OS or if the provided binaries aren't working please as the path to coap-client
using coapClient
. Here's how I compiled the included binaries versions.
Manually adding all lamps are no fun, right? We want them to just appear for us!
You'll have to figure out the IP to your gateway yourself (if you've managed to compile coap-client I'm guessing you'll handle that). The PSK will be written under the Gateway.
{
"platform": "Ikea",
"name": "Gateway",
"ip": "192.168.x.xxx",
"psk": "xxxxxxxxxxxxxxxx"
}
If you need the actual coaps communication for debugging add debug: true
to your config.
Thanks to r41d for figuring out https://github.com/bwssytems/ha-bridge/issues/570#issuecomment-292188880
Thanks to Hedda for https://github.com/bwssytems/ha-bridge/issues/570#issuecomment-292081839
And a huge thanks to the rest of the people in https://github.com/bwssytems/ha-bridge/issues/570
FAQs
Ikea gateway support for homebridge
The npm package homebridge-ikea receives a total of 5 weekly downloads. As such, homebridge-ikea popularity was classified as not popular.
We found that homebridge-ikea demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
/Research
Malicious npm package impersonates Nodemailer and drains wallets by hijacking crypto transactions across multiple blockchains.
Security News
This episode explores the hard problem of reachability analysis, from static analysis limits to handling dynamic languages and massive dependency trees.
Security News
/Research
Malicious Nx npm versions stole secrets and wallet info using AI CLI tools; Socket’s AI scanner detected the supply chain attack and flagged the malware.