
Research
5 Malicious Chrome Extensions Enable Session Hijacking in Enterprise HR and ERP Systems
Five coordinated Chrome extensions enable session hijacking and block security controls across enterprise HR and ERP platforms.
module-usage
Advanced tools
See how a module is used in npm.
var usage = require('module-usage');
var name = process.argv[2] || 'intersect';
usage(name).on('data', function(u) {
console.log('%s (%s)', u.dependant, u.file);
console.log();
console.log(indent(u.code));
console.log();
});
function indent(txt) {
return txt.replace(/^/gm, ' ');
}
Some usages of intersect:
$ node example.js intersect
bower-json (lib/util/isComponent.js)
var intersect = require('intersect');
bower-json (lib/util/isComponent.js)
common = intersect(keys, [
'repo',
'development',
'local',
'remotes',
'paths',
'demo'
]);
roole-prefixer (lib/LinearGradientPrefixer.js)
var intersect = require('intersect');
roole-prefixer (lib/LinearGradientPrefixer.js)
var prefixes = intersect(this.prefixes, [
'webkit',
'moz',
'o'
]);
...
Some usages of mkdirp:
$ node example.js mkdirp
ae86 (lib/engine.js)
var mkdirp = require('mkdirp');
ae86 (lib/engine.js)
mkdirp(p.join(dir, page).replace(/(\/[^\/]+$|\\[^\\]+$)/, ''), '0755', function (err) {
'callback...';
});
amerigo (vespucci.js)
var mkdirpSync = require('mkdirp').sync;
amerigo (vespucci.js)
mkdirpSync(folderpath);
amerigo (pvespucci.js)
mkdirpSync(padpath);
Create a readable stream that emits usage objects with keys
dependant: The name of the module depending on namefile: The path of the file where name is usedcode: The line where name is usednode: The ast node where name is used, generated by esprimaPass opts.registry to overwrite the default npm registry location.
$ npm install -g module-usage
$ module-usage intersect
$ npm install module-usage
MIT
FAQs
See how a module is used in npm
The npm package module-usage receives a total of 0 weekly downloads. As such, module-usage popularity was classified as not popular.
We found that module-usage demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
Five coordinated Chrome extensions enable session hijacking and block security controls across enterprise HR and ERP platforms.

Research
Node.js patched a crash bug where AsyncLocalStorage could cause stack overflows to bypass error handlers and terminate production servers.

Research
/Security News
A malicious Chrome extension steals newly created MEXC API keys, exfiltrates them to Telegram, and enables full account takeover with trading and withdrawal rights.