Research
Security News
Quasar RAT Disguised as an npm Package for Detecting Vulnerabilities in Ethereum Smart Contracts
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
northwatcher
Advanced tools
NorthWatcher is cron for filesystem changes.
Each line in your watch file specifies a directory to watch and a command to run when changes occur in that directory. You may optionally specify the kind of changes that will trigger the command.
Lines that begin with # are comments. No trailing comments.
The watch file resides at ~/.northwatcher
and looks like this:
# triggers when files are created or removed in /etc
/etc notify-the-admin.sh
# triggerz when you save pikcherz of teh kittehz
+ Pictures rbx post-to-twitter.rb
# triggers when files are removed from the ~/todo directory
- todo update-remote-todo-list.sh
So each line has an optional trigger followed by a directory and then a command. The triggers are:
+
: files are created-
: files are removedYou can use one or both of these, if you omit the trigger then both creations and removals are monitored.
No frills.
No spaces in filenames.
If you actually want to watch /etc
it seems like you need root privs. I don't need this behaviour so I'm not likely to fix it.
Node nerd? It's just an npm i --global northwatcher
away. Otherwise you'll need to install node and npm and then run the aforementioned command.
Once it's installed just run northwatcher
from the command line. It does not daemonize itself, it only logs to stdout, and it doesn't run at startup. It's barely beyond "hack" status.
Copyright 2011 Sami Samhuri
MIT License
FAQs
NorthWatcher is cron for filesystem changes.
We found that northwatcher demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
Security News
Research
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
Research
Security News
Socket researchers discovered a malware campaign on npm delivering the Skuld infostealer via typosquatted packages, exposing sensitive data.