
Security News
/Research
Wallet-Draining npm Package Impersonates Nodemailer to Hijack Crypto Transactions
Malicious npm package impersonates Nodemailer and drains wallets by hijacking crypto transactions across multiple blockchains.
immutable-with-cursors
Advanced tools
This is a simple wrapper around [Facebooks immutable data collection library](https://github.com/facebook/immutable-js), adding [Om](https://github.com/swannodette/om)-style cursors.
This is a simple wrapper around Facebooks immutable data collection library, adding Om-style cursors.
Cursors are a way of passing around smaller parts of a larger data structure, that will call back to the parent data structure when updated. This is very useful in component-based web libraries (e.g. React), where sub components only should be passed the subset of data that they need, yet must be able to pass updates back up the tree.
Register a watcher to be triggered when the collection is updated.
Remove a registered watcher.
Calls all registered watchers with the passed value, then returns the value.
Creates a cursor at the given keypath and returns it. When the cursor is updated, tha callback is called with the parent collection.
FAQs
This is a simple wrapper around [Facebooks immutable data collection library](https://github.com/facebook/immutable-js), adding [Om](https://github.com/swannodette/om)-style cursors.
The npm package immutable-with-cursors receives a total of 0 weekly downloads. As such, immutable-with-cursors popularity was classified as not popular.
We found that immutable-with-cursors demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
/Research
Malicious npm package impersonates Nodemailer and drains wallets by hijacking crypto transactions across multiple blockchains.
Security News
This episode explores the hard problem of reachability analysis, from static analysis limits to handling dynamic languages and massive dependency trees.
Security News
/Research
Malicious Nx npm versions stole secrets and wallet info using AI CLI tools; Socket’s AI scanner detected the supply chain attack and flagged the malware.