
Research
Two Malicious Rust Crates Impersonate Popular Logger to Steal Wallet Keys
Socket uncovers malicious Rust crates impersonating fast_log to steal Solana and Ethereum wallet keys from source code.
jquery-sessiontimeout
Advanced tools
After a set amount of time, a dialog is shown to the user with the option to either log out now, or stay connected. If log out now is selected, the page is redirected to a logout URL. If stay connected is selected, a keep-alive URL is requested through AJ
After a set amount of time, a dialog is shown to the user with the option to either log out now, or stay connected. If log out now is selected, the page is redirected to a logout URL. If stay connected is selected, a keep-alive URL is requested through AJAX. If no options is selected after another set amount of time, the page is automatically redirected to a timeout URL.
$.sessionTimeout();
after document readymessage
Text shown to user in dialog after warning period.
Default: 'Your session is about to expire.'
keepAliveUrl
URL to call through AJAX to keep session alive. This resource should do something innocuous that would keep the session alive, which will depend on your server-side platform.
Default: '/keep-alive'
keepAliveAjaxRequestType
How should we make the call to the keep-alive url? (GET/POST/PUT)
Default: 'POST'
redirUrl
URL to take browser to if no action is take after warning period.
Default: '/timed-out'
logoutUrl
URL to take browser to if user clicks "Log Out Now".
Default: '/log-out'
warnAfter
Time in milliseconds after page is opened until warning dialog is opened.
Default: 900000 (15 minutes)
redirAfter
Time in milliseconds after page is opened until browser is redirected to redirUrl.
Default: 1200000 (20 minutes)
FAQs
After a set amount of time, a dialog is shown to the user with the option to either log out now, or stay connected. If log out now is selected, the page is redirected to a logout URL. If stay connected is selected, a keep-alive URL is requested through AJ
We found that jquery-sessiontimeout demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Socket uncovers malicious Rust crates impersonating fast_log to steal Solana and Ethereum wallet keys from source code.
Research
A malicious package uses a QR code as steganography in an innovative technique.
Research
/Security News
Socket identified 80 fake candidates targeting engineering roles, including suspected North Korean operators, exposing the new reality of hiring as a security function.