
Research
Malicious fezbox npm Package Steals Browser Passwords from Cookies via Innovative QR Code Steganographic Technique
A malicious package uses a QR code as steganography in an innovative technique.
method-missing
Advanced tools
The method missing handler class is simple to use, simply extend it from your es6 class (or base class) and you are able to handle the missing methods.
It defaults to using a method on your class __call(name, args)
however you can chage this behaviour.
Method missing also works with singletons and other objects, please see the examples below.
MethodMissing is packaged with the extends-classes project allowing for the extension of multiple classes.
Include the MethodMissing class:
const MethodMissing = require('method-missing');
Standard inheritance example:
class Simple extends MethodMissing {
constructor() {
super();
}
__call(name, args) {
console.log(`The method '${name}' was called with:`, args);
}
}
const simple = new Simple();
simple.nonExistent('Hello!');
// The method 'nonExistent' was called with: { '0': 'Hello!' }
Static only example:
class Simple {
static __call(name, args) {
console.log(`The method '${name}' was called with:`, args);
}
}
Simple = MethodMissing.static(Simple);
Simple.nonExistentStatic(1, 2, 3);
// The method 'nonExistentStatic' was called with: {0: 1, 1: 2, 2: 3}
Complete example:
class Simple extends MethodMissing {
constructor() {
super();
}
iExist(str) {
console.log(`I do exist ${str}.`);
}
__call(name, args) {
console.log(`The method '${name}' was called with:`, args);
}
static __call(name, args) {
console.log(`The method '${name}' was called with:`, args);
}
}
Simple = MethodMissing.static(Simple);
const simple = new Simple();
simple.nonExistent('hello');
simple.iExist('world');
Simple.nonExistentStatic('hey');
// The method 'nonExistent' was called with: { '0': 'hello' }
// I do exist world.
// The method 'nonExistentStatic' was called with: { '0': 'hey' }
Used on an object:
const object = MethodMissing.static({
one: function() {
console.log('hey there');
}
}, (name, args) => {
console.log(`Sorry, method '${name}' doesn't exist.`);
});
object.one();
object.two();
// hey there
// Sorry, method 'two' doesn't exist.
Check out the test folder for more!
$ npm install method-missing
Changing the __call
method
class Test extends MethodMissing {
constructor() {
super('missing');
}
missing(name, args) {
console.log(`The method '${name}' was called with:`, args);
}
static missing(name, args) {
console.log(`The method '${name}' was called with:`, args);
}
}
Test = MethodMissing.static(Test, 'missing');
const test = new Test();
test.nonExistent('hello');
test.nonExistentStatic('world');
// The method 'nonExistentStatic' was called with: { '0': 'hey' }
// The method 'nonExistent' was called with: { '0': 'hello' }
// The method 'nonExistentStatic' was called with: { '0': 'world' }
Modifying the arguments to be an array:
class Args extends MethodMissing {
constructor() {
super();
}
__call(name, [...args]) {
console.log(`The method '${name}' was called with:`, args);
}
}
new Args().say('hello', 'world!');
// The method 'say' was called with: [ 'hello', 'world!' ]
From the package
$ npm test
FAQs
Method Missing class for es6+
We found that method-missing demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
A malicious package uses a QR code as steganography in an innovative technique.
Research
/Security News
Socket identified 80 fake candidates targeting engineering roles, including suspected North Korean operators, exposing the new reality of hiring as a security function.
Application Security
/Research
/Security News
Socket detected multiple compromised CrowdStrike npm packages, continuing the "Shai-Hulud" supply chain attack that has now impacted nearly 500 packages.