
Product
PHP and Composer Support Is Now in Beta
Socket’s PHP and Composer support is now in Beta for all customers, with PHP reachability analysis generally available.
This code is a classic malicious loader/dropper: it fetches a hardcoded remote JavaScript payload using curl, executes it via require() from a disk file, and then deletes the payload to hinder investigation. The presence of encoding/obfuscation of the URL and shell fragments, combined with network-to-execution flow, makes this highly indicative of supply-chain malware.
FAQs
security holding package
The npm package lib-mtop receives a total of 7 weekly downloads. As such, lib-mtop popularity was classified as not popular.
We found that lib-mtop demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 0 open source maintainers collaborating on the project.

Product
Socket’s PHP and Composer support is now in Beta for all customers, with PHP reachability analysis generally available.

Product
Socket is bringing experimental protection to Firefox, scanning 97,000+ extensions in Mozilla's official directory for malware and risky updates.

Research
/Security News
Three compromised Rust crates pulled in a malicious dependency that downloaded and executed cross-platform malware during Cargo builds.