
Security News
/Research
Wallet-Draining npm Package Impersonates Nodemailer to Hijack Crypto Transactions
Malicious npm package impersonates Nodemailer and drains wallets by hijacking crypto transactions across multiple blockchains.
json-cycle
Advanced tools
Utilities provide ability to encode/decode circular structures for converting to and from JSON.
Based on JSON-js
In your project:
npm install json-cycle --save
This package contains four functions, decycle, retrocycle, stringify and parse, which make it possible to encode cyclical structures and convert them to JSON, and then recover them. This is a capability that is not provided by ES5. JSONPath is used to represent the links. [http://GOESSNER.net/articles/JsonPath/]
Note: If you stringify javascript structure and then parse it back in some cases you can get not the same javascript structure. For instance, if it contains Date object you get String form of it.
Note:
decycle
function makes a deep copy of any provided structure while originaldecycle
function from JSON-js does not make copy forBoolean
,Date
,Number
,RegExp
andString
objects.
Makes a deep copy of an provided structure with resolving all circular references. The duplicate references which part of an cycle are replaced with an object of the form
{$ref: PATH}
where the PATH is a JSONPath string that locates the first occurrence.
Example:
jc = require('json-cycle');
var a = {};
a.self = a;
console.log(JSON.stringify(jc.decycle(a)));
Output:
{{"$ref":"$"}}
returns provided object
Restores an object that was reduced by decycle
function. Members whose values are
objects of the form
{$ref: PATH}
are replaced with references to the value found by the PATH. This will restore cycles. The object will be mutated.
Note: The eval function is used to locate the values described by a PATH. The root object is kept in a $ variable. A regular expression is used to assure that the PATH is extremely well formed. The regexp contains nested
Example:
jc = require('json-cycle');
var s = '{{"$ref":"$"}}';
jc.retrocycle(JSON.parse(s));
Output:
produced object equals to
var a = {};
a.self = a;
It equals to JSON.stringify(decycle(object))
It equals to retrocycle(JSON.parse(object))
MIT © 2015-... Valery Barysok, Douglas Crockford
FAQs
Encode/decode circular structures for converting to and from JSON.
The npm package json-cycle receives a total of 1,312,168 weekly downloads. As such, json-cycle popularity was classified as popular.
We found that json-cycle demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
/Research
Malicious npm package impersonates Nodemailer and drains wallets by hijacking crypto transactions across multiple blockchains.
Security News
This episode explores the hard problem of reachability analysis, from static analysis limits to handling dynamic languages and massive dependency trees.
Security News
/Research
Malicious Nx npm versions stole secrets and wallet info using AI CLI tools; Socket’s AI scanner detected the supply chain attack and flagged the malware.