
Research
Security News
Lazarus Strikes npm Again with New Wave of Malicious Packages
The Socket Research Team has discovered six new malicious npm packages linked to North Korea’s Lazarus Group, designed to steal credentials and deploy backdoors.
_ __ __ _____
(_) | \/ | | __ \
_ | \ / | | | | | ___ _ __ ___
| | | |\/| | | | | | / _ \ | '_ \ / _ \
| | | | | | | |__| | | (_) | | | | | | __/
|_| |_| |_| |_____/ \___/ |_| |_| \___|
###Keep your tasks in your work!!! Create tasks in any file using markdown syntax and organize them with a local kanban board. Your tasks are in your files, so you can share your board on github, dropbox, or any other cloud storage provider.
###Tasks are just markdown links!!!
Put a task at the top of a list called "todo"
[this is a task](#todo:10)
In javascript code
//[this is a task in javascript code](#todo:0)
Put a task on the bottom of a list called "doing" (giving it a sort value of 1000 will put it at the bottom unless you have tons of tasks in the list)
[this is a task in doing](#todo:20)
Tasks are sorted by the number after the :
npm install -g imdone
open a terminal window and navigate to your local project folder and run:
imdone -o
You can start it in multiple directories and switch between projects in the UI
Here's the help output
Usage: imdone [options]
Options:
-h, --help output usage information
-V, --version output the version number
-o, --open Open imdone in the default browser
-s, --stop Stop imdone server
-d, --dirs <directories> A comma separated list of project directories
Examples:
Open imdone in a browser with the current working directory as the project root
$ imdone -o
Open imdone in a browser with list of project directories
$ imdone -o -d projects/imdone,projects/myproject
If you like iMDone and want to help me make it better, you can make a contribution at pledgie. Every donation is very much appreciated.
If you have some spare time, then there is no better way to help an open source project than to get involved in one of the following ways.
fork this repository and run imdone in your local copy. I use imdone for keep track of development of imdone
imdone will create a directory named imdone that will contain your custom configuration and a file to keep your lists in order
Filter by file name
After running imdone for the first time, modify imdone/imdone.js in your project directory. The default config looks like this. Your imdone.js will extend this.
module.exports = {
include:/^.*$/,
exclude:/^(node_modules|imdone|target)\/|\.(git|svn)\/|\~$|\.(jpg|png|gif|swp)$/,
//github : {url : "http://www.github.com/piascikj/imdone"}, //Use this if you want links to point at github
marked : {
gfm: true,
pedantic: false,
sanitize: true
}
};
iMDone has only been tested on my Ubuntu 12.04 desktop using chrome 23.0.x as the default browser. It should work on any machine that has nodejs and npm installed and for auto update of boards, a browser that supports websockets.
####0.1.25
####0.1.24
####0.1.23
####0.1.22
####0.1.20
####0.1.19
####0.1.18
####0.1.17
####0.1.14
####0.1.13
####0.1.11
Now able to hide a list from board using hidden #####imdone/data.js is now formatted like this
{ lists:[Array of list names], hidden:[Array of list names to hide] }
####0.1.10
####0.1.8
####0.1.7
####0.1.6
####0.1.4
####0.1.3
####0.1.2
FAQs
A task board and wiki in one!
The npm package imdone receives a total of 18 weekly downloads. As such, imdone popularity was classified as not popular.
We found that imdone demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
The Socket Research Team has discovered six new malicious npm packages linked to North Korea’s Lazarus Group, designed to steal credentials and deploy backdoors.
Security News
Socket CEO Feross Aboukhadijeh discusses the open web, open source security, and how Socket tackles software supply chain attacks on The Pair Program podcast.
Security News
Opengrep continues building momentum with the alpha release of its Playground tool, demonstrating the project's rapid evolution just two months after its initial launch.