Research
Security News
Malicious npm Packages Inject SSH Backdoors via Typosquatted Libraries
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
cURL for Distributed Web command line
Heavily based on the *-fetch code created by RangerMauve for their outstanding project Agregore Browser you should try
npm install -g curld
or
yarn global add curld
In these early versions, you can only use GET requests, and the output is always in the terminal.
curld protocol://server/directory/filename
This output will be sent to the screen If you want to save to a file or want to get a binary file, like an image, you can use:
curld protocol://server/directory/filename > newfilename
Apparently the DAT protocol support doesn't run with old DAT drives. I will have to test this more.
curld dat://blog.maeve.moe
curld gemini://gemini.circumlunar.space/
curld gemini://hellomouse.net/mouse.jpg > mouse.jpg
curld hyper://blog.maeve.moe/
The support for IPFS is still broken. Only IPNS requests can be made.
curld ipns://ipfs.io/
FAQs
pURL for Distributed Web command line
The npm package p2p-curl receives a total of 0 weekly downloads. As such, p2p-curl popularity was classified as not popular.
We found that p2p-curl demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
Security News
MITRE's 2024 CWE Top 25 highlights critical software vulnerabilities like XSS, SQL Injection, and CSRF, reflecting shifts due to a refined ranking methodology.
Security News
In this segment of the Risky Business podcast, Feross Aboukhadijeh and Patrick Gray discuss the challenges of tracking malware discovered in open source softare.