
Security News
/Research
Wallet-Draining npm Package Impersonates Nodemailer to Hijack Crypto Transactions
Malicious npm package impersonates Nodemailer and drains wallets by hijacking crypto transactions across multiple blockchains.
proposal-factory-decorator
Advanced tools
This module was made to decorate fields to furder create a Factory for that class.
This package is aimed to testing and seeding at your projects. It's easy to implement and create your own class factory.
You might want to use this quick cli command to install the package.
npm i --save proposal-factory-decorator
In this example, we can see how the @Factory decorator works. It's quite simple and easy to duplicate.
import { Factory, CreateFactory } from "proposal-factory-decorator";
class User {
@Factory(() => "name")
field: string;
@Factory(() => false)
isTrue: boolean;
}
const userFact = new CreateFactory() < User > User;
(async () => {
const user = await userFact.generate(); // Creates an User
console.log(user); // { field: "name", isTrue: false }
})();
It's highly recommended to use faker package. The faker package provides useful evaluations to our @Factory method.
npm i --save faker @types/faker
One simple example (extending the example above) to use faker lib
import { Factory, CreateFactory } from "proposal-factory-decorator";
import faker from "faker";
class User {
@Factory(() => faker.name.findName())
name: string;
@Factory(() => faker.internet.email())
email: boolean;
}
const userFact = new CreateFactory() < User > User;
(async () => {
const user = await userFact.generate(); // Creates a faker User
console.log(user); // { name: "Some random name", email: "some@random.email" }
})();
The @Factory decorator only works with the CreateFactory class. If you try to do something like
class DontWork {
@Factory(() => somevalue)
field: any;
}
console.log(new DontWork()); // it will print this empty value {}
If you want to support me, go check my Patreon!
Happy coding you all 🖥️🙇!
FAQs
This module was made to decorate fields to furder create a Factory for that class.
The npm package proposal-factory-decorator receives a total of 0 weekly downloads. As such, proposal-factory-decorator popularity was classified as not popular.
We found that proposal-factory-decorator demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
/Research
Malicious npm package impersonates Nodemailer and drains wallets by hijacking crypto transactions across multiple blockchains.
Security News
This episode explores the hard problem of reachability analysis, from static analysis limits to handling dynamic languages and massive dependency trees.
Security News
/Research
Malicious Nx npm versions stole secrets and wallet info using AI CLI tools; Socket’s AI scanner detected the supply chain attack and flagged the malware.