data:image/s3,"s3://crabby-images/9fef7/9fef7e77a4ff9a4c39b8a32ffd7ebda8c2145888" alt="Malicious PyPI Package Exploits Deezer API for Coordinated Music Piracy"
Research
Security News
Malicious PyPI Package Exploits Deezer API for Coordinated Music Piracy
Socket researchers uncovered a malicious PyPI package exploiting Deezer’s API to enable coordinated music piracy through API abuse and C2 server control.
logger-tracker
Advanced tools
Event tracking and logging
Exports a TRACKER
variable
import { TRACKER } from 'request-tracker';
// initialize the tracker
TRACKER.init(options);
// call track wherever you want to track events
TRACKER.track(options);
####TRACKER.init(options)
Initializes the TRACKER
constant with supplied options
Supports the following options:
version (string): version of the application you're tracking
url (string): The URL that the event logs will be posted to
context (string): a map of tracker-wide context values that will be added to each event
####TRACKER.track(options)
Can be called inside routes or middleware functions with option values being functions of request objects (and additional middleware functions like morgan
).
These options will be added to the event entry.
Supports the following options:
eventType (string): required type of event you're tracking for example 'login'
metric (string): required The name of the metric you're tracking
value (number): required The value of the metric you're tracking
user ({[k: string]: v: any}): JSON representation of a user on which you can specify attribute that will be written to the resulting event entry.
Currently supported attribute are id
and email
attr ({[k: string]: v: string}): Maps custom attribute names to string properties.
A small utility that ensures this
is bound to the console object. Exports a LOGGER
variable to interface with.
import { LOGGER } from 'request-tracker';
LOGGER.init();
LOGGER.log('hello');
LOGGER.warn('warning');
LOGGER.error('error');
FAQs
tracks and logs
The npm package logger-tracker receives a total of 2 weekly downloads. As such, logger-tracker popularity was classified as not popular.
We found that logger-tracker demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers uncovered a malicious PyPI package exploiting Deezer’s API to enable coordinated music piracy through API abuse and C2 server control.
Research
The Socket Research Team discovered a malicious npm package, '@ton-wallet/create', stealing cryptocurrency wallet keys from developers and users in the TON ecosystem.
Security News
Newly introduced telemetry in devenv 1.4 sparked a backlash over privacy concerns, leading to the removal of its AI-powered feature after strong community pushback.