
Research
NPM targeted by malware campaign mimicking familiar library names
Socket uncovered npm malware campaign mimicking popular Node.js libraries and packages from other ecosystems; packages steal data and execute remote code.
it-length-prefixed-stream
Advanced tools
Read and write length-prefixed byte arrays over a duplex stream
Read and write length-prefixed byte arrays over a duplex stream
This module makes it easy to send and receive length-prefixed byte arrays over streams.
import { lpStream } from 'it-length-prefixed-stream'
const stream = lpStream(duplex)
// read the next length-prefixed chunk
const bytes = await stream.read()
// write a length-prefixed chunk
await stream.write(Uint8Array.from([0, 1, 2, 3, 4]))
// write several chunks, all individually length-prefixed
await stream.writeV([
Uint8Array.from([0, 1, 2, 3, 4]),
Uint8Array.from([5, 6, 7, 8, 9])
])
$ npm i it-length-prefixed-stream
<script>
tagLoading this module through a script tag will make its exports available as ItLengthPrefixedStream
in the global namespace.
<script src="https://unpkg.com/it-length-prefixed-stream/dist/index.min.js"></script>
Licensed under either of
Unless you explicitly state otherwise, any contribution intentionally submitted for inclusion in the work by you, as defined in the Apache-2.0 license, shall be dual licensed as above, without any additional terms or conditions.
FAQs
Read and write length-prefixed byte arrays over a duplex stream
We found that it-length-prefixed-stream demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 0 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Socket uncovered npm malware campaign mimicking popular Node.js libraries and packages from other ecosystems; packages steal data and execute remote code.
Research
Socket's research uncovers three dangerous Go modules that contain obfuscated disk-wiping malware, threatening complete data loss.
Research
Socket uncovers malicious packages on PyPI using Gmail's SMTP protocol for command and control (C2) to exfiltrate data and execute commands.