Security News
Research
Data Theft Repackaged: A Case Study in Malicious Wrapper Packages on npm
The Socket Research Team breaks down a malicious wrapper package that uses obfuscation to harvest credentials and exfiltrate sensitive data.
merged-pooler
Advanced tools
High performance Stratum poolserver in Node.js. One instance of this software can startup and manage multiple coin pools, each with their own daemon and stratum ports :)
I am trying to make this useable software. On my list of up-front todos:
Frontend and payment enhancements will be a separate repo. (Insert repo URL when created)
The software that I forked was a wonderful beginning that never came to fruition. I hope to bring Node stratum into the mainstream of merged mining.
May be working (needs additional testing):
Not working currently:
git clone https://github.com/sigwo/node-merged-pool
cd node-merged-pool
npm update
or
npm install merged-pooler
Note to self: Add actual instructions here.
Please see the included example.js file for more information. This section will be expanded soon.
Below is my donation address. The original dev addresses are listed because I felt scammy if I removed them. They no longer are supporting the current development effort. Please donate to:
1BRUcdAdjdQoAgUwcN7nbNDzqhL92ub3xE
197f17af3751709b2c7f076a2d3393e064022e91
Original author (zone117x):
1KRotMnQpxu3sePQnsVLRy3EraRFYfJQFR
LKfavSDJmwiFdcgaP1bbu46hhyiWw5oFhE
VgW4uFTZcimMSvcnE4cwS3bjJ6P8bcTykN
mWexUXRCX5PWBmfh34p11wzS5WX2VWvTRT
QehPDAhzVQWPwDPQvmn7iT3PoFUGT7o8bC
XcQmhp8ANR7okWAuArcNFZ2bHSB81jpapQ
DBGGVtwAAit1NPZpRm5Nz9VUFErcvVvHYW
254ca13444be14937b36c44ba29160bd8f02ff76
Released under the GNU General Public License v2
FAQs
High performance Stratum poolserver in Node.js for merged mining
The npm package merged-pooler receives a total of 1 weekly downloads. As such, merged-pooler popularity was classified as not popular.
We found that merged-pooler demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
Research
The Socket Research Team breaks down a malicious wrapper package that uses obfuscation to harvest credentials and exfiltrate sensitive data.
Research
Security News
Attackers used a malicious npm package typosquatting a popular ESLint plugin to steal sensitive data, execute commands, and exploit developer systems.
Security News
The Ultralytics' PyPI Package was compromised four times in one weekend through GitHub Actions cache poisoning and failure to rotate previously compromised API tokens.