
Research
Two Malicious Rust Crates Impersonate Popular Logger to Steal Wallet Keys
Socket uncovers malicious Rust crates impersonating fast_log to steal Solana and Ethereum wallet keys from source code.
Randomly select people for FEMUG-SP's meetings.
npm install -g marmelada
$ marmelada --help
Usage: marmelada [URL] [OPTIONS]
Randomly select people for FEMUG-SP's meetings.
Example:
marmelada http://sp.femug.com/t/femug-42-nasa --total 10
Options:
-v --version Display current software version.
-h --help Display help and usage details.
-f --format Output format.
-t --total Total spots available for the meeting (defaults to list size).
-i --ignore Ignore list (comma separated and case sensitive).
# List all participants
$ marmelada http://sp.femug.com/t/thread-name/thread-id
# Randomly select 10 users
$ marmelada http://sp.femug.com/t/thread-name/thread-id -t 10
# You can also ignore a list of users (case sensitive)
$ marmelada http://sp.femug.com/t/thread-name/thread-id -i jarvis,BatMan,YOLO
# Prefixing a list of users with "@"
$ marmelada http://sp.femug.com/t/thread-name/thread-id -t 3 -f '@%s'
@igorapa
@marcelgsantos
@keitoliveira
-t, --totalTotal spots available for the meeting. Without this argument marmelada will simply retrieve a list of all participants.
-i, --ignoreComma-separated list of user names to keep out of the results.
By default moderators and admins participating on the thread will be ignored.
-f, --formatFormat the entries list output. %s will be replaced by the user name.
There are a few simple steps in order to select users for FEMUG-SP meetings:
1. An admin creates a new forum thread with the details for the next meeting (company hosting, address, maximum capacity, etc);
2. Everyone interested on participating must reply the thread showing their interest;
3. If the number of people interested is less than the maximum capacity, a random list of people will be selected.
MIT © Rafael Rinaldi
FAQs
Randomly select people for FEMUG-SP's meetings.
We found that marmelada demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
Socket uncovers malicious Rust crates impersonating fast_log to steal Solana and Ethereum wallet keys from source code.

Research
A malicious package uses a QR code as steganography in an innovative technique.

Research
/Security News
Socket identified 80 fake candidates targeting engineering roles, including suspected North Korean operators, exposing the new reality of hiring as a security function.