Research
Security News
Quasar RAT Disguised as an npm Package for Detecting Vulnerabilities in Ethereum Smart Contracts
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
kurento-utils
Advanced tools
:warning: Warning
This library is not actively maintained. It was written to simplify the Kurento Tutorials and has several shortcomings for more advanced uses.
For real-world applications we recommend to avoid using this library and instead to write your JavaScript code directly against the browser’s WebRTC API.
kurento-utils-js is a browser library that can be used to simplify creation and handling of RTCPeerConnection objects, to control the browser’s WebRTC API.
Be sure to have installed Node.js and Bower in your system:
curl -sSL https://deb.nodesource.com/setup_18.x | sudo -E bash -
sudo apt-get install -y nodejs
sudo npm install -g bower
To install the library, it's recommended to do that from the NPM repository:
npm install kurento-utils
Alternatively, you can download the code using git and install manually its dependencies:
git clone https://github.com/Kurento/kurento.git
cd kurento/browser/kurento-utils-js/
npm install
Screen and window sharing depends on the privative module kurento-browser-extensions
. To enable its support, you'll need to install
the package dependency manually or use a getScreenConstraints
function yourself on runtime. If it's not available, when trying to share the screen or a window content it will throw an exception.
To build the browser version of the library you'll only need to exec the grunt task runner and they will be generated on the dist
folder. Alternatively, if you don't have it globally installed, you can run a local copy by executing:
node_modules/.bin/grunt
FAQs
Kurento JavaScript Utilities
The npm package kurento-utils receives a total of 842 weekly downloads. As such, kurento-utils popularity was classified as not popular.
We found that kurento-utils demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 0 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
Security News
Research
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
Research
Security News
Socket researchers discovered a malware campaign on npm delivering the Skuld infostealer via typosquatted packages, exposing sensitive data.