
Research
Using Trusted Protocols Against You: Gmail as a C2 Mechanism
Socket uncovers malicious packages on PyPI using Gmail's SMTP protocol for command and control (C2) to exfiltrate data and execute commands.
lambda-compression
Advanced tools
This library provides a wrapper that can be used to compress content in responses when using the AWS HTTP API.
The library supports compression with br
, gzip
and deflate
. It will return responses with compressed data matching the supported accept-encoding
header provided by the client.
Simply add the lambda-compression
package to your project:
npm add lambda-compression
# when using Yarn
yarn add lambda-compression
This library provides only one method compress
that accepts two parameters with the respective types of APIGatewayProxyEventV2
and APIGatewayProxyStructuredResultV2
(for more details on these types, see TypeScript Types for AWS Lambda).
Simply call the compress
method as follows before returning the result of your Lambda.
import { compress } from 'lambda-compression';
import {
Handler,
APIGatewayProxyEventV2,
APIGatewayProxyResultV2,
} from 'aws-lambda';
type ProxyHandler = Handler<APIGatewayProxyEventV2, APIGatewayProxyResultV2>;
export const handler: ProxyHandler = async (event, context) => {
return compress(event, {
statusCode: 201,
headers: {
'Content-Type': 'application/json',
},
body: '{"data":"hello"}',
});
};
FAQs
HTTP payload compression for AWS Lambda functions
The npm package lambda-compression receives a total of 30 weekly downloads. As such, lambda-compression popularity was classified as not popular.
We found that lambda-compression demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 0 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Socket uncovers malicious packages on PyPI using Gmail's SMTP protocol for command and control (C2) to exfiltrate data and execute commands.
Product
We redesigned Socket's first logged-in page to display rich and insightful visualizations about your repositories protected against supply chain threats.
Product
Automatically fix and test dependency updates with socket fix—a new CLI tool that turns CVE alerts into safe, automated upgrades.